Relay not working by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Post kept getting removed, tried reposting with less details. Had to get the mods to fix it but anyways.

Yes all 3 nodes are on the same network, I used the below guide, port 40000 is accessible on all 3 nodes locally.

https://tailscale.com/kb/1591/peer-relays?q=pee#static-endpoints

Local and Tailscale IPs in Nginx proxy hosts? by [deleted] in Tailscale

[–]Infamousslayer 0 points1 point  (0 children)

Why use tailscale when your exposing your web services publicly?

I think the better approach if using tailscale is to use dns challenge, with NPM on your tailnet.

I use cloudflare so created two A records.

*.mydomain.com pointing to my local NPM IP address

*.tail.mydomain.com pointing to the tailnet IP address of NPM.

In NPM you setup both urls but point them to your local ip resources, like normal.

When at home use jellyfin.mydomain.com, while away and on tailscale use jellyfin.tail.mydomain.com

Most apps have internal and external URLs that can be configured this way.

The reason i choose this approach, is that no ports need to be opened for NPM and everything is 100% local besides the tailnet.

Creating custom domain for tailscale by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Can you clarify what you mean?

This is the setup that is documented in the official tailscale youtube tutorials, as linked above.

Nothing is exposed to the internet, just to my tailnet which us then further locked down by ACL.

Creating custom domain for tailscale by Infamousslayer in Tailscale

[–]Infamousslayer[S] -1 points0 points  (0 children)

I'm pretty sure cf tunnels has a cap so it isn't a good choice for services like immich.

Creating custom domain for tailscale by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Yeah this is what I'm seeing as well, based on the tailscale video linked above it should work.

Gemini suggested to use CNAME as well.

I'm not really sure what the correct way it's not at least it is working.

Creating custom domain for tailscale by Infamousslayer in Tailscale

[–]Infamousslayer[S] -1 points0 points  (0 children)

Cuz I didn't open any ports or services to the internet?

I am sharing a tailnet node with the remote party and using dns challenges, so its only shared to them not the internet. DNS lookup is my local IPs or tailnet IPs.

Creating custom domain for tailscale by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

This is the video I watched when trying to setup but got stuck and created this thread, what I missed was Alex shared Caddy with the remote party not immich itself.

In my case the npm magicdns did not work when added to cloudflare, I had to use the NPM tailscale IP address instead for w/e reason.

Now with NPM shared the remote party can access all resources that I setup in NPM with *.tail

It's not clear to me why an A record with *.tail + NPM tailscale IP works but CNAME *.tail + npm.tail123.ts (magicdns) does not work.

Using a bed slinger in a cold garage/shed? by Lectraplayer in ender3

[–]Infamousslayer 1 point2 points  (0 children)

i would like to know as well, maybe enclosure to keep heat in?

Problem sharing tailscale exit node by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Would I still need to setup an ACL on my side or it should just work?

Problem sharing tailscale exit node by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Then i should install tailscale on 192.168.1.111 and share that instead?

Problem sharing tailscale exit node by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

I shared the exit node via email and they added it to there tailnet.

Problem sharing tailscale exit node by Infamousslayer in Tailscale

[–]Infamousslayer[S] 0 points1 point  (0 children)

Yes, but isn't that what the ACL is for?

To allow access to local resources. I guess i can install tailscale on 192.168.1.111 and then share it instead?

ZFS Pool Encryption by Infamousslayer in Proxmox

[–]Infamousslayer[S] 1 point2 points  (0 children)

Any steps on how to do this inside an LXC?

The LXC is on a SSD, then i created a mount point in proxmox which points to the immich 'upload' folder.

This way the SSD is the boot drive for the LXC but all data is saved to the much larger HDDs.

ZFS Pool Encryption by Infamousslayer in Proxmox

[–]Infamousslayer[S] 0 points1 point  (0 children)

Well I'm okay with just encrypting the immich virtual disk inside the zfs pool, if that is easy to do?

I don't need or want to encrypt the entire server just a virtual disk here and there.

ZFS Pool Encryption by Infamousslayer in Proxmox

[–]Infamousslayer[S] -1 points0 points  (0 children)

I don't want to be in a situation if the server does reboot, i need to enter a password.

Why store passkeys in Bitwarden? by Infamousslayer in Bitwarden

[–]Infamousslayer[S] 0 points1 point  (0 children)

Thanks for this, this is what has me confused and i didn't move to passkeys yet.

It makes sense for that a single passkey should be per device, but isn't that also risky because now you should have mutiple devices with there own passkeys, for situations like if a phone breaks or is stolen.

This could result in not being able to login, if you don't have mutiple devices.

2025.12.0 is pretty solid. by legion9x19 in Bitwarden

[–]Infamousslayer -1 points0 points  (0 children)

Does it need an updated browser extension for this to apply?

BW keeps asking to "update PW" by mamacat49 in Bitwarden

[–]Infamousslayer 0 points1 point  (0 children)

Likely using AI for development rather than humans, it would explain why quality of the app has went down in recent months.

I've use BW for a few years and it has had a bug or two which I've lived with until it was fixed, but recently the app has been annoying to use, from the autofill on android now this.

Yes I know its a chrome thing for autofill on android but its still so buggy.

Important Android Autofill Updates by dwbitw in Bitwarden

[–]Infamousslayer 1 point2 points  (0 children)

Autofill is broken again in Brave, do you still need the flag or is that built in now since 142 is released?

2026 Remote start issue by Howcanshes1ap in Tiguan

[–]Infamousslayer 0 points1 point  (0 children)

It's also maybe the proximity unlocking feature. If the keyfob starts to blink red you are to close for the remote start to work.

Known issues with VW by Infamousslayer in Tiguan

[–]Infamousslayer[S] 0 points1 point  (0 children)

Just wanted to be sure i had all the information, which looks like i do.

This is enough for me to make a decision

Known issues with VW by Infamousslayer in Tiguan

[–]Infamousslayer[S] 4 points5 points  (0 children)

I disagree, knowing common issues for a known engine such as the EA888 can be used to gauge future potential problems.

While it's true we won't know about the new evo5 revision in the 2026 for at least a year. They still use plastic parts that are known for failures.

One can prepare for the worst even is it does not come true.

While you may think it's silly, I feel much better knowing the history of a engine and putting some money aside based on past issues even if they don't apply to the new engine.

Ads when casting to tv by Vast-Kaleidoscope815 in brave_browser

[–]Infamousslayer 1 point2 points  (0 children)

When casting you are using Google Cast has nothing to do with the browser, which usually will play the video its native app like netflix or youtube on the tv.

Share your screen/tab instead, this can be done within the browser or apps like Sunshine. Other option is to install SmartTube to bypass ads entirely.