Hacker News new | ask | show | jobs
by BasedInfra 1006 days ago
You can use Cloudflare access for internal which is tunnel + identity access management for end users.
1 comments

I'de rather have full network isolation for internal stuff like admin portals. Plus, I already use Tailscale to sync DBs between regions and clouds.
My only issue with Tailscale was that it can't seem to stay logged in longer than something like 45 or 90 days.. making it a fun toy, but not for enterprise use.

As someone who travels a lot with machines all over the world, if a node goes offline I can ask someone to reboot a machine .. but there is no way I am giving random people credentials to my machines and network to fix issues.

There is an option to disable key expiry in the machine settings, unless you're talking about a different issue / bug. In my case, simply turning off key expiry is enough to keep the machine online for months inside tailscale network so far.
Thank you, I will take a look for this and give it a try.
Machines can have unlimited expiry

API keys have 90 day expiry but you can get around that with an oauth app that has credentials that don't expire