Hacker News new | ask | show | jobs
by fragmede 896 days ago
Tailscale. It's Wireguard under the hood but with a company doing got UX on top.
1 comments

I’m familiar with Tailscale but could you provide more detail on how to use it as an authentication method?

The two ways I see:

On my home server, only allow incoming connections from the Tailnet. However, this seems lockout prone.

Or I could create a VLAN and put all hardwired devices in it. All running Tailscale. But this wouldn’t cover securing my laptop (has to be on WiFi in my situation). This still seems lockout prone?

Additionally, the router is still exposed “normally” and can be compromised without requiring VPN access

Sorry if this post is a bit of A mess. Thanks.

Maybe they expose the wiregard port through the firewall and VPN into a flat management network