Tailscale Services GA: App-aware connectivity with more control

This should be excellent for selfhosters that have all their services in one VM. I haven't tried this myself, but I think this means you can: - …

  • you can create memorable links instead of memorizing port numbers: jellyfin.foo-bar.ts.net

BTW, I’m doing something similar with standard DNS records that point to an internal Tailscale IP. I can go to immich.mydomain.com which only works if Tailscale is active. Let’s Encrypt works too. Obviously the setup isn’t automatic but it’s automateable for more adept self-hosters.

Account Manager

Manage your web hosting account, domains, websites, and digital services securely.

Account Manager
Does this work from outside your lan or just when you’re in the network with your dns server?
Works outside. I’m setting a standard DNS record on a standard DNS provider to an internal TS IP. The record works everywhere but the IP is only accessible when TS is on. Whether I’m on the local net or outside.
I do this too. Can recommend.
Immich needs this, right? I remember it not working on a tailscale funnel path.
I haven’t tried funnel but it works using an internal Talscale IP/host and port. E.g. the-immich-host:1234 if the-immich-host is a Tailscale machine.
Just tried it, Services doesn’t work with funnel. You need to be on the tailnet.