Checkout latest blog post on Passwordless VPN authentication with #passkeys: https://anuragbhatia.com/post/2025/05/headscale-pocketid-integration
@sebsauvage De mon côté, j'ai deux #Pihole, #unbound avec #headscale et #tailscale. Résultat : Pas de blocage chez moi et en ballade.
1.ivesoccer.sx n’est pas bloqué. Juste pour l'exercice théorique, je ne regarde pas le foot :-)
Configuring #headscale on my tiny #freebsd vps. Isn't 7 USD too much for a VPS with 1C and 1G? Fortunately can't get it from #hetnzer as I still haven't got my passport...
I have got my vps from #privex
Finally i got #HeadPlane working with my #Nix flake. Now i "just" need to create a systemd unit so i can include it as a service (currently its started manually for testing).
Checkout my latest blog post on "Understanding headscale/tailscale ACL" - https://anuragbhatia.com/post/2024/04/understanding-headscale-tailscale-acl/
@levieuxtoby @crisdespluviers pour le trad j'auto-héberge nos CD numérisés en FLAC. J'ai utilisé différents systèmes, jellyfin, kodi, navidrome, mpd, moode audio, LMS,... Pour celleux qui ont une connexion suffisante et qui bricolent un peu, c'est pas trop compliqué, avec 1 petit RaspberryPi. À Noël j'ai monté un Pi2B avec #DietPi pour un cadeau. J'ai même ajouté une carte DAC pas cher, dans le cadre de sa fonction première, c'est à dire, streamer de la musique localement avec du bon son sur une chaîne Hi-Fi. Pour la connexion depuis l'extérieur, c'est de caler un petit VPN du style #Tailscale, ou #Headscale (auto-hébergé) et ça marche sans ouvrir de port.
I updated my #Headscale and #Tailscale blog post with additional information about the Nginx Proxy Manager section (PiHole with wildcard DNS) and an improved ACL diagram that I believe is clearer and more accurate.
English: https://www.lucasjanin.com/2025/01/03/headscale-tailscale-in-a-self-hosted-environment
Français: https://www.lucasjanin.com/2025/01/03/headscale-et-tailscale-dans-un-enviroment-auto-heberge
I wonder why there is no #HeadScale UI / Web frontend packaged in #NixOS, since there are several available.
Maybe i need to learn to package one myself?
Who wants to join in?
Mon explortation avec #Headscale et #Tailscale est documenté sur mon blog. J'y discute des différences entre un serveur #VPN et Tailscale, Headscale, la configuration de Docker Compose, l'interface #Headplane, le contrôle d'accès via #ACL, l'intégration avec #NginxProxyManager, les nœuds de sortie, les routes et l'installation sur macOS, iOS, Linux, Debian, Proxmox LXC, #Synology NAS et #HomeAssistant.
#selfhosted #selfhosting
https://www.lucasjanin.com/2025/01/03/headscale-et-tailscale
My journey with #Headscale and #Tailscale is documented on my blog. I discuss the differences between a #VPN server and Tailscale, Headscale, Docker Compose configuration, #Headplane interface, access control through #ACL, integration with #NginxProxyManager, exit nodes, routes, and installation on macOS, iOS, Linux, Debian, Proxmox LXC, #Synology NAS, and #HomeAssistant.
Note that I will not cover OIDC authentication at this time.
Je finalise un nouveau billet en français pour mon blog sur mon déploiement de #Headscale et #Tailscale dans mon #homelab. #selfhosted #selfhosting #VPN et Tailscale, Headscale, Docker Compose, #Headplane, contrôle d'accès via ACL, intégration avec Nginx Proxy Manager, et plus encore. Je ne couvrirai pas encore l'authentification OIDC.
Faites-moi savoir si vous avez des questions spécifiques ou d'autres sujets que vous aimeriez que j'aborde.
I'm working on a new blog post about my deployment of #Headscale and #Tailscale in my #homelab for early 2025. I will discuss the differences between a #VPN server and Tailscale, Headscale, Docker Compose configuration, #Headplane, access control through ACL configuration, integration with Nginx Proxy Manager, and more. Please note that I will not cover OIDC authentication yet.
Let me know if you have any specific questions or other topics you would like me to address.
#selfhosted #selfhosting
@meep I didn't try #netbird because they don't have an Apple TV client. I'm using #headscale for months, and I only regret not jumping on this earlier :-)
My setup is super stable, and it's very easy to add devices. I only miss the option to have different DNS per client.
Trying to setup a VPN overlay on my #nixos server, really liking the look of netbird but have had the hardest time getting my #HAProxy working for it. Anyone out there using #netbird or #headscale? Curious about anyones experience setting up or using either, and if you have a strong opinion on a self hosted Overlay VPN solution?
Is this nuts?
Simpler and equal secure way?
Creating a #freebsd #openbsd "security/tor" gateway in the cloud, so I can connect with all my Browsers/Apps/Services (Desktop & Mobile) from everywhere and route my traffic through it?
And to pump it up, I also would install a #headscale server, so I could tunnel my traffic to the VPS via Tailscale privately.
Client ---> ===TailsScaleTun===----> Jail ---> security/tor----> Destination
Users of #headscale, what features is it missing compared to #tailscale? Is it stable? Is there a client that works with Android?
A whole day of downtime of my many #selfhosted services!!!
When I realised that something was wrong I was at work and could not access the servers (because tailscale - or rather #headscale - is also selfhosted). A very stressful feeling that non-selfhosters (= Microsoft/Google/etc. customers) do not know at all. The downside of #DigitalSovereignty and #infrastructuring from below!
All is good now, countermeasures are implemented (for next time) and calm is spreading through my body
Je crois que je vais enfin commencer une relation amoureuse exclusive.
Avec #Tailscale / #Headscale.
@hobbsc I host my own #headscale server, and use that with the official tailscale clients. It works well for me.