[HN Gopher] Using Tailscale without using Tailscale
       ___________________________________________________________________
        
       Using Tailscale without using Tailscale
        
       Author : todsacerdoti
       Score  : 33 points
       Date   : 2023-04-01 12:50 UTC (10 hours ago)
        
 (HTM) web link (tailscale.dev)
 (TXT) w3m dump (tailscale.dev)
        
       | justsomehnguy wrote:
       | aka Using Tailscale free offering to bootstrap your Headcale
       | infrastructure while placing Headscale control plane behind
       | NAT/CGNAT/whatever using Tailscale Funnel.
       | 
       | Quite amusing idea if you are okay to use Tailscale even for a
       | bit.
        
       | mkl wrote:
       | > A Tailscale account on the SaaS control plane (you can use some
       | throwaway gmail address for this).
       | 
       | How, with a throwaway SIM-card? I don't understand Tailscale's
       | dependence on third parties for authentication.
       | Google/GitHub/etc. don't need to know which computers I'm linking
       | together, so I use ZeroTier instead.
        
         | apenwarr wrote:
         | Tailscale now supports custom OIDC providers. But if you
         | already have the ability to host one, you won't benefit from
         | what's in the above article (which is about hosting stuff at
         | home even without a public IP address).
         | https://tailscale.com/blog/custom-oidc/
        
         | 1vuio0pswjnm7 wrote:
         | Perhaps everyone knows this, but it's possible to create Gmail
         | addresses without a SIM card inserted. This can be useful,
         | e.g., when one has exceeded the max number of addresses that
         | can be assigned to a single mobile number.
         | 
         | Make no mistake, I am not endorsing third party authentication.
         | It is totally inappropriate for the problem that Tailscale
         | software is purportedly trying to solve, if I understand it
         | correctly. (Using Wireguard to create mesh networks.)
        
       | ithkuil wrote:
       | It's a reasonable thing to do.
       | 
       | You can use managed tailscale for your main network and a
       | headscale for some compartment of your network where you don't
       | want to share the same main tailnet for whatever reason. You can
       | use how many subnet routers you want etc etc
        
       | anderspitman wrote:
       | > Headscale is a self-hostable version of the Tailscale control
       | plane. It's a great project, and it's quite remarkable what
       | they've been able to accomplish through sheer reverse engineering
       | fueled by the boredom that came up at the start of the pandemic
       | 
       | Not to take anything away from the creators of headscale for
       | their excellent work, but I think this doesn't give enough credit
       | to Tailscale. They've gone out of their way to support headscale.
        
       | rockwotj wrote:
       | I've been considering using tailscale for SSHing into my desktop
       | when I work somewhere else like a coffee shop, etc.
       | 
       | Do folks recommend it for this use case or is there another
       | product people would recommend?
        
         | rockwotj wrote:
         | I see someone mentioned zerotier, tailscale has a good
         | comparison doc: https://tailscale.com/compare/zerotier/
        
       ___________________________________________________________________
       (page generated 2023-04-01 23:02 UTC)