4 ms·
Not misguided. The IP is from a wireguard network setup by tailscale which only allows packets signed by the private key of the device assigned that IP. It's a
by 0xCMP 5y ago
Not misguided. The IP is from a wireguard network setup by tailscale which only allows packets signed by the private key of the device assigned that IP. It's as secure as an SSH key pair would be.
The only question left for me really is the authorization of which users you're allowed to login as.
- xena 5y agoBingo. I expect that to be the more complicated issue, which is much more interesting and will require collaboration to accomplish. Either way I just wanna see where this rabbit hole goes.
- blibble 5y agois it a wise to grant root to your servers to any process running on your machine?
- gnufx 5y agoI probably wouldn't just rely on SSH host key pairs either outside something like a compute cluster.