4 ms·
Tailscale at least on Linux is a mess of surprise configuration and netfilter rules. It's not for everyone, but if you're into control of your netfilter tables
by bb88 1y ago
Tailscale at least on Linux is a mess of surprise configuration and netfilter rules.
It's not for everyone, but if you're into control of your netfilter tables, it's certainly not for you.
- haiku2077 1y agoIt's a lot more sensible if you use vanilla iptables. And it's far less of a mess than Docker, at least.
- globular-toast 1y agoI recently discovered this is how Calico works and it can indeed be really surprising when it goes wrong. At least in a k8s context you have the option of just burning the node and starting again rather than trying to debug it, though.