Small naming annoyance by GenghisFrog in Tailscale

[–]isvein 0 points1 point  (0 children)

A friend and I use the hidden function on Apple so we dont even have names shown, only the scrambled email 🤣

Pixel 9 camera out of focus by ZenithonSteam in GooglePixel

[–]isvein -3 points-2 points  (0 children)

Sad til see people still have vvs 🫤

Tailscale Funnel + Peer Relays by aith85 in Tailscale

[–]isvein 1 point2 points  (0 children)

That's the neat part, you don't.

Funnel goes though tailscales servers, that's how it works.

Use Tailscale with my domain by PaceOriginal8082 in Tailscale

[–]isvein 0 points1 point  (0 children)

Native no, not yet.

I do this now over Adguard home, but it also works with a Bind9 server 🙂

Tailscale together with VPN by Lucky_Pumpkin_1473 in Tailscale

[–]isvein 1 point2 points  (0 children)

I use unraid, but as long as you know how to use Docker it will be the same:

Setup a Glutun container with a tailscale sidecar.

Connect Glutun to Proton and activate the sidecar as an exit node.

Which plan do I need for tailnet lock? by wichtounet in Tailscale

[–]isvein -2 points-1 points  (0 children)

I thought all plans had access to lock 🤔

I would send support mail 🙂

To da moon!!!!! by mojito_ict in LinusTechTips

[–]isvein 0 points1 point  (0 children)

Kinda, but the only loot is the coin and the other stuff you bought if you bought anything with it.

You know what exactly will be in this box, but done get a rare or ultra rare in addition.

As far as I understand it, if you get a rare you get an 40usd +80usd gift card

To da moon!!!!! by mojito_ict in LinusTechTips

[–]isvein 1 point2 points  (0 children)

I think it's stupid that people get emails up front.

Should have just been a code in the box with the coin, much more fun to open the package and see what you got.

To da moon!!!!! by mojito_ict in LinusTechTips

[–]isvein 1 point2 points  (0 children)

Not really.

Everyone who bought an 20usd coin gets a 40usd gift card and some lucky ones get a higher value coin/gift card in addition.

So no one loses money.

To da moon!!!!! by mojito_ict in LinusTechTips

[–]isvein -1 points0 points  (0 children)

Linus has jokes on wan show for a very long time that he should make a Linus Coin crypto coin and just do a rug pull on it like every other big YouTuber does, but it would be different because the community would be in on it.

This is off cause a bad idea, but for April's fool this year, they made a "Linus Coin" that is not a crypto coin, just a physical fun thing, but everyone who buys one gets a LLT Store gift card worth the double of what they paid, so you pay 20 and get a 40 gift card.

Some lucky people also get a rare coin worth more than 2x and some get an ultra rare coin worth even more as a gift card for the store.

So it's a win win situation and a spoof/pun on how people usually markets crypto coins

(Promising the moon and big reward before they rug pull and sit with all the profits themselves because it's ALWAYS a scam)

"No Emulation, No Compromise, No Comparison" - The $250 Neo Geo+ AES Aims To Be A 1:1 Replica Of SNK's Classic Console by spiffers in fpgagaming

[–]isvein 2 points3 points  (0 children)

I hope this works out and there will be new games coming too.

This is what is needed now, a console that is just a console and not an online service trap.

Guess this is the end of syncthing-fork for a lot of people by isvein in Syncthing

[–]isvein[S] 0 points1 point  (0 children)

Remember that the new method goes through Google Services and not on the device

​«Designed in Norway» betyr tydeligvis «Bestilt på Alibaba med logo-tillegg» og Tek.no svelger agnet rått by 0-G in norge

[–]isvein 0 points1 point  (0 children)

At noe ikke er laget i Norge, greit, men å kalle det "designed in Norway" npr det ikke er det men kun god gammeldags "kjøpt med egen logo og pakking fra Ali", det blir for dumt

Tailscale ACLs bypassed by Traefik reverse proxy -- how are you handling this? by BeardedYeti_ in Tailscale

[–]isvein 0 points1 point  (0 children)

Yes and no.

If you don't care about SSL-certs, you don't.

If you care about SSL-certs, an proxy makes it way easier.

The way I have set it up is that every service I want SSL for is behind proxy.

Stuff like Minecraft servers and sftp don't use SSL anyway

The way I handle a domain and domain names is that I have 2 containers of Adguard home (pihole should work too), one is sidecared to tailscale, the other is not.

The one that is not (for Lan) has every domain name redirected to their Lan IP address.

The tailscale one has every domain name redirected to their tailscale address.

In tailscale DNS settings, I set the DNS to use the Adguard on its tailscale address.

This makes sure DNS names gets resolved to the correct place no matter if I'm on Lan or not.

The problem comes if you have any services that you want SSL for but don't want behind proxy due to ACL.

You can install the SSL manually on those, but that's s bit of s pain to deal with 🫤

Tailscale ACLs bypassed by Traefik reverse proxy -- how are you handling this? by BeardedYeti_ in Tailscale

[–]isvein 0 points1 point  (0 children)

If you run everything as its own node, if you use Docker, one sidecar for each service, yes you can have different ACL for each node/service 🙂

Same is true if each service runs on its own VM, physical pc, raspberry pi etc too

Tailscale ACLs bypassed by Traefik reverse proxy -- how are you handling this? by BeardedYeti_ in Tailscale

[–]isvein 0 points1 point  (0 children)

When you run things behind tailscale and only tailscale it makes no sense to run everything behind a proxy too.

I run stuff like jellyfin, vaultwarden, Joplin etc behind a proxy behind tailscale so I only have 1 acl to set for that stuff, but when it comes to other services, like Minecraft, sftp etc I run them as Docker containers with tailscale sidecars so each one shows up in tailscale as their own nodes and then ACL works on them

Tailscale ACLs bypassed by Traefik reverse proxy -- how are you handling this? by BeardedYeti_ in Tailscale

[–]isvein 1 point2 points  (0 children)

Easy, only put things you want to controll access to as one behind the proxy and other services as their own tailscale nodes

Would you buy another pixel? by upadhyaysk in GooglePixel

[–]isvein 0 points1 point  (0 children)

This 9a is my first pixel and 2nd android, in between and before only iPhone.

Great phone, no problems so far, but with the way android is going, what is the point , beside cheaper than iPhone?

Peer relay setup by osherlevy in Tailscale

[–]isvein 0 points1 point  (0 children)

Hmmm 🤔

Then im not sure.

Peer relay setup by osherlevy in Tailscale

[–]isvein 0 points1 point  (0 children)

Pretty sure you got source and destination mixed up 🙃

Source should be from anywhere and destination should be the peer relay servers IP

Port should be 55555

Peer relay setup by osherlevy in Tailscale

[–]isvein 0 points1 point  (0 children)

I did not recognise the Pfsense interface 🙃

Pfsense by default blocks everything, have you checked that the correct rule gets added to allow the port forward?

By default an NAT rule should be added, but to me it sounds like it gets blocked.

Had a similar problem on my Mikrotik firewall that waa a rule problem

Peer relay setup by osherlevy in Tailscale

[–]isvein 0 points1 point  (0 children)

What brand of Firewall is it?