This is my regular announcement that you need Tailscale in your life. I’m here in Korea on my iPhone but I’m watching Netflix using my Synology NAS back in Oregon as an exit node. Absolutely rock solid personal free VPN *and* amazing for teams and developers as well. Magical.
@shanselman while I certainly had the knowledge and ability to set up an alternative, Tailscale was certainly much, much easier. I use it whenever I'm not on my home network.
@emag @shanselman I used to run my OpenVPN server for years, but then tried Tailscale as a backup VPN. You know, when certificates expire, some change broke something, etc.
Took me a few weeks to realise I'm better off migrating everything to Tailscale. Been running it for more than 3 years now and super happy with it.
@y4si0 @shanselman what sold it for me was it was the first time I frictionlessly set something up, it just worked, and a late college associate who was *way* smarter than I could hope to be told me I'd made a good decision.
@shanselman and `tailscale serve` is such a useful tool in web development since it gives you easy https for localhost on mobile devices!
@shanselman
I've been happy with ZeroTier, a similar service.
@shanselman So I have a regular WireGuard setup on my synology. It will probably require regular maintenance, because it’s fairly custom. What advantages would Tailscale have over regular WireGuard, besides the above?
WireGuard® vs. Tailscale | Which is Better for You?

Compare WireGuard® vs. Tailscale to find which is best for connecting devices behind NATs and firewalls, IoT devices and policy management needs.

@shanselman Thanks appreciate. Fun fact: my wireguard just stopped working 😂
@shanselman Thanks for the Tailscale hint. Got the NAS as exit node, including a working subnet so I can access local devices from anywhere!
@shanselman
I can absolutely see the use for teams and companies, but as a "personal VPN", it seems a bit pointless.
My router already lets me set up WireGuard tunnels, and for "pretending to be at home" (or generally securing access from a public network), this seems easier than running Tailscale.
@aserraric @shanselman needs to be coupled with a dyndns setup though.
WireGuard® vs. Tailscale | Which is Better for You?

Compare WireGuard® vs. Tailscale to find which is best for connecting devices behind NATs and firewalls, IoT devices and policy management needs.

@shanselman @[email protected] yes, but router setup wireguard doesn’t need individual clients to be installed on each node, AFAIK.
@ssg Yes, they mentioned that in the link. It all comes down to how much effort do you want to put into it
@shanselman that’s why i prefer router-based wireguard. most effort goes into dyndns setup. tailscale is obviously more capable in many aspects but maintaining clients on every node feels like more work to me. depends on the use case, of course.
@shanselman thanks for this. I'd never heard of tailscale until now. I'll use it whenever I travel.
@shanselman Love Tailscale! Using at work now too, not just personal. This reply is brought to you by a Tailscale Funnel created with the Kubernetes Operator ingress controller (see the domain of this account)

@shanselman of course, and Old Fart might ask...

Why are you watching Netflix when you could be out enjoying Korea?

@codebyjeff Because it’s 3am and I’m downloading movies for the flight home

@shanselman and Old Fart would be out "preparing" himself at 3am to sleep the whole flight home ;-)

Actually, I'll be in Korea 2 weeks from now - what's the best way to spend a non-touristy evening in downtown Seoul?

@shanselman I have recently set up Tailscale on an Apple TV. It has subnet routing so all of my home devices are available through that one point. It even works when the Apple TV is in standby (i.e. not watching the TV). Big fan 😀
@shanselman ....just read the Tailscale site details....sounds great. Easy for a low/med tech user to set up/use? Only complaint I came across was the battery drain issue, not sure if resolved? I live in SE Asia, and currently use Nord and PIA...both I think log activity.

@shanselman I knew there was a reason I followed you besides the occasional reminder of the passage of time when you post about how your children are no longer small and that is absolutely crazy…

This is exactly what I was looking for this week. Was just about to learn how to set up my own VPN, but this is way better.

@shanselman It got even better when I discovered the setting for split dns, enabling me to let all requests to the domain I use internally for the services at home, go through the dns on my OpnSense router. It so nice to be able to outsource all of this, rather than needing to spend time on maintaining it myself. Which free up time for me to do the things I really want to do. 😊
@shanselman I just wish it would be tiny enough for your run of the mill OpenWRT router with limit space. Even the tiny variant is stilp big by comparison.
@stiller_leser can run on an appletv, raspberry pi, or inside a container. You may have a small extra bit of compute laying around.