• 1 Post
  • 23 Comments
Joined 1 year ago
cake
Cake day: August 8th, 2024

help-circle


  • I have been thinking of this myself. I think what ill do eventually is dmz a headscale coordinator instance on an old raspi and then make that internet facing for my tailscale instances. But before running my own coordinator want to do is go over some NIST guidelines first to harden the raspi. I think starting with what you want to achive and build a threat model helps narrow options of implementation and cuts the noise.










  • Glad im not the only one struggling with this. I was able to get nginx to give me the congratulation page via the tailscale ip for the machine but getting that routing to work with my own custom name is giving me a headache. I am probably adding an extra unnecessary layer by trying to use adguard home as a dns rewrite. If you crack it id love to hear how you achieved it.