need something very basic, but very reliable to run a tailscale subnet router on - my first thought was just a VM on a proxmox box, but if that shits the bed, i can't access the LOM because the subnet router is on it!

so probably need something standalone, but i dont want it sucking too much power (or too expensive)

@decryption usff ftw
@uep @decryption Yeah, id have two usff optiplex's and have one as a cold spare (preferably with the config on there) so then you can just swap
@theraspb @uep hmmmm, i wonder if there's a way to have a HA style setup of those little guys - so if for some reason one craps out the other one takes over - maybe I can do it in the Arista switch? (ping the interface and if it stops responding, disable that port and enable the other SFF's port)

@decryption @theraspb lots of options, including just two separate sessions on two sets of IPs so you pick one or the other as OOB access. The less cleverness the better.

My personal choice would be even simpler (though it's not necessarily mutually exclusive). Just wireguard on the mikrotik router or switch, protecting ssh to same. Then I can tunnel, send WoL packets, and more from there as needed to recover.