This should be excellent for selfhosters that have all their services in one VM. I haven’t tried this myself, but I think this means you can:
- you can create memorable links instead of memorizing port numbers: jellyfin.foo-bar.ts.net
- share one service from a machine instead of all of them in a more intuitive way
If you’re new to Tailscale Services, it lets you publish internal resources like databases, APIs, and web servers as named services in your tailnet, using stable MagicDNS names. Rather than connecting to individual machines, teams connect to logical services that automatically route traffic to healthy, available backends across your infrastructure. This decoupling makes migrations, scaling, and high availability far easier, without reconfiguring clients, rewriting access policies, or standing up load balancers. Our documentation has details on use cases, requirements, and implementation.
avidamoeba@lemmy.ca 2 days ago
While this is great, especially for smaller self-hosters, as a setup gets more and more dependent on Tailscale, one should think about self-hosting Headscale, and therefore not being over-reliant on services not offered by it. I’m in that boat and I haven’t done the Headscale migration yet.
irmadlad@lemmy.world 2 days ago
What is it about Tailscale that is giving you heartburn? I am over reliant on my ISP. Without them, selfhosting would be rather bland.
avidamoeba@lemmy.ca 2 days ago
Ownership, size and profit growth strategy. My ISP is a massively profitable regulated oligopoly. They aren’t providing a free service today that they’ll have to monetize down the line to compensate for the time operating on VC funding. Tailscale, awesome as it is today, is in my view guaranteed to enshittify over time as they start getting pressed to grow profit. That’s not too much of a problem for me since the clients I use are open source and there’s an alternative open source server. If I used features unavailable in Headscale or were in over my head and unable to self-host Headscale, I might be in a bad time some time down the line.
Archer@lemmy.world 2 days ago
Yeah it’s gonna hurt a lot when they enshittify
MatSeFi@lemmy.liebeleu.de 2 days ago
did it one 8-Months ago or so…just works… like black magic. Fire and forget VPN (But SSO is a must in my opinion otherwise key exchange is too tideous ) I did it about 8 months ago… it just works like black magic. It’s a “fire and forget” VPN, but SSO is a must in my opinion; otherwise, key exchange is too tedious.
avidamoeba@lemmy.ca 2 days ago
You’re talking about Headscale right?
prenatal_confusion@feddit.org 2 days ago
I switched to pangolin and I am amazed how well it works.
WingedObsidian@sh.itjust.works 2 days ago
Love pangolin