5 ms·
I wish so too, same for all the self-hosters using tailscale...
by phito 10mo ago
I wish so too, same for all the self-hosters using tailscale...
- kreetx 10mo agoThese are not the same thing, the parent is confused..
- dns_snek 10mo agoTailscale connections don't get terminated by a middle box, it's just end-to-end encrypted Wireguard under the hood. Cloud-hosted control panel is a risk because they could push malicious configuration changes to your clients (ACLs and new nodes if you're not using the lock feature), but they can't do it without leaving a trace like Cloudflare can.
- progbits 10mo agoTailscale cannot passively observe traffic. They could inject malicious keys into your config but would be hard to mask the evidence of that.
- treesknees 10mo agoWould it be hard? I thought the point of tailscale was not having to manage or concern yourself with key distribution.
- newdee 10mo agoLookup the Tailnet Lock feature.
- yencabulator 10mo agoA feature in the client software they control, that you run as root, that auto-updates regularly?
- deleted 10mo ago[deleted]
- newdee 10mo agoYou didn’t look it up, did you?