Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
juhovh
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
juhovh
1y ago
I have heard not so great things about Forti VPNs, sorry to hear you have to work with those. In theory, as long as the Forti VPN does not overlap with the Tailscale IP address range, the simplest solution is to just run Tailscale and openf
2.
▲
by
juhovh
1y ago
Yes, the docker container is running outside the network
3.
▲
by
juhovh
1y ago
There’s unfortunately no always-on host supporting Tailscale. The Apple TV suggestion in the other comment is pretty good though, since it’s easy for anyone to use. Naturally requires having one though.
4.
▲
by
juhovh
1y ago
This actually sounds better than I thought, pretty unexpected but valid selling point for Apple TV. :D Will keep in mind, although my use case is resolved for now.
5.
▲
by
juhovh
1y ago
Thanks, really appreciate the feedback! <3
6.
▲
by
juhovh
1y ago
While I have no experience of their 5G routers specifically, based on my experiences with other GL.iNet routers and the TG-Link I have, I don't disagree. The Deco they have has the benefit of easy mesh wifi setup with fast roaming, but
7.
▲
by
juhovh
1y ago
Yeah you're exactly on point here, and this limitation exists on both iOS and Android alike. I got very frustrated with switching between VPNs and connections breaking every time I did that.
8.
▲
by
juhovh
1y ago
I actually use the non-mobile Flint 2 myself at home, and it's one of the devices in my tailnet. I worked with their engineers on the forums to get better IPv6 support for their WireGuard tunnels. Running both Tailscale and WireGuard o
9.
▲
by
juhovh
1y ago
Thank you, wasn't aware of this project, but it makes total sense! Managing the advertised subnets manually is a bit of a pain, while the downsides of accidentally advertising a subnet are negligible, since you still have full control
10.
▲
by
juhovh
1y ago
Looks interesting, I see you've added a light React UI and a simple REST API on the Go service to query for status and control the Tailscale interface. I'll make a note for sure! I myself didn't really have a need to disable
11.
▲
by
juhovh
1y ago
You definitely don't need that many lines of code, started with just a couple. After that I started having several small issues: - the router is behind DDNS and changes its IP address on every connect, had to set up reresolve script an
12.
▲
by
juhovh
1y ago
The one they ended up using was TP-Link Deco X50-5G, but honestly I'm not sure if I can fully recommend that. It has had its own share of problems...
13.
▲
by
juhovh
1y ago
Not super familiar with fly.io, but with a quick look at that page it should work just fine. Just instead of dropping that camellia.conf to the WireGuard MacOS client or Linux wg-quick, spin up the TailGuard container somewhere (pretty much
14.
▲
by
juhovh
1y ago
Cool, this sounds like a very similar setup actually! Even in this case, you still need to have a node somewhere to run the container and store the WireGuard keys, to be able to link the tailnet and the WireGuard endpoint. So that single po
15.
▲
by
juhovh
1y ago
This is using the subnet router functionality of Tailscale. However, instead of advertising subnets of the local physical network, as explained in the Tailscale docs, it's automatically parsing the given WireGuard config and advertisin
16.
▲
Show HN: TailGuard – Bridge your WireGuard router into Tailscale via a container
(github.com)
150 points
by
juhovh
1y ago
|
38 comments
17.
▲
by
juhovh
10y ago
1. The transactions. 2. The mechanism used to determine what 'mining' bitcoins means is defined by the bitcoin client software implementation. In case of bitcoin it is about finding a suitable random number by using brute force. 3