mathstodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance for maths people. We have LaTeX rendering in the web interface!

Server stats:

2.9K
active users

#headscale

1 post1 participant0 posts today

Hattet Ihr bei #headscale / #tailscale mal das Problem das ssh von Client zu Client nicht (mehr) geht? Das timed bei mir aus, obwohl beide Clients laut Server an Tailnet verbunden sind. Beides Linux, ssh sollte tun, timed aber aus. Any ideas?

Da es hier keine Reaktion gab, nochmal die Frage: Nutzt hier jemand #headscale, um darüber auf seine Server zuzugreifen? Ich würde das gerne machen, aber ssh wird nicht auf andere Clients erlaubt. ich habe eine acl.conf,, die genau das ermöglichen soll, diese wird auch eingelesen - aber tailscale up --ssh auf dem Client behauptet weiterhin, die ACL würde ssh-Zugriff nicht erlauben. Hat jemand eine funktionierende acl.conf für headscale, mit der ssh für Clients untereinander ermöglicht wird?

Hmmm, nutzt hier jemand #headscale und hat eine ACL, die SSH auf die Clients erlaubt? Die Beispiele von tailscale scheinen nicht zu wirken und wenn ich tailscale up --ssh sage meint der Client das die ACL kein ssh zulassen...

got a domain for for my vps for ₹2
no sh*t!
both in and linux main in the middle literally comes out of ignorance or malicious intent
our ISP couldn’t possibly have the equipment to man in the middle your encrypted traffic even if they did see it. You’re also too much effort, the other 99% of their users are just using their servers and plain DNS no way they care that much to peek at your traffic even if they somehow could. I just woke up so I’m giving you a 30k foot answer but I’ll return with something more technical. I’m a cyber security engineer and you should be one too if not.
reddit.com/r/firewalla/comment

Actually shocked at how easy #headscale is to setup, from zero to a working system in about 30 minutes. The only hiccup I had was that the included pfSense version of the tailscale client wasn't supported, but manually installing 1.80 from freshports sorted it out quickly.

Even nicely integrates with my OIDC…

Replied in thread

@fivexhotel assuming that were talking about someone running a few services like #nextcloud #adguardhome or #jellyfin and wanting to access those services away from their home LAN.

An off the cuff example, #tailscale #headscale or #nebula do this with an added layer of security on top whatever authentication is built into said hosted services.

@tailscale is particularly self-hosting noob friendly, though there are security/foss concerns that may put some folks off.

Hope this helps.

Replied in thread

@mttaggart first off, let me apologize for just skimming the article at this point. I added it to my weekend reading. So forgive me if you've covered this and I didn't see it.

Why not use #headscale or #nebula ? Just curious and want to inform my reading, at the very least.

I Already get why you'd not want to offload the lighthousing to third parties like tailscale.

Replied in thread

@levieuxtoby @crisdespluviers pour le trad j'auto-héberge nos CD numérisés en FLAC. J'ai utilisé différents systèmes, jellyfin, kodi, navidrome, mpd, moode audio, LMS,... Pour celleux qui ont une connexion suffisante et qui bricolent un peu, c'est pas trop compliqué, avec 1 petit RaspberryPi. À Noël j'ai monté un Pi2B avec #DietPi pour un cadeau. J'ai même ajouté une carte DAC pas cher, dans le cadre de sa fonction première, c'est à dire, streamer de la musique localement avec du bon son sur une chaîne Hi-Fi. Pour la connexion depuis l'extérieur, c'est de caler un petit VPN du style #Tailscale, ou #Headscale (auto-hébergé) et ça marche sans ouvrir de port.