Тёмный

Remotely access anything from anywhere with a cloud VPS and Caddy - a comprehensive beginners guide 

Tailscale
Подписаться 13 тыс.
Просмотров 6 тыс.
50% 1

Опубликовано:

 

18 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 26   
@PaulLittlefield
@PaulLittlefield 3 дня назад
"Sorry, I've spent far too long explaining where the tilde button is on the keyboard." Brilliant video and this line made my day :-) keep up the great videos Alex, love them.
@kmcdowell111
@kmcdowell111 День назад
Thanks for all the detail Alex. I love it. Other “explainer” videos often leave out crucial bits that leave more novice or intermediate learners stuck even after consulting a lot of other resources.
@jeffersonspringfield1785
@jeffersonspringfield1785 4 дня назад
(Reposting as I realized the other video link is not unlisted.) Thanks for the video Alex. You don't go into much detail about the benefits of having this as a remote VPS / reverse proxy. Are there inherent security benefits of using a VPS + remote proxy vs. self-hosting caddy and opening a port? I suspect opening the port isn't great but couldn't someone break into the VPS and using Tailscale, get free reign of my home network?
@Tailscale
@Tailscale 2 дня назад
A VPS means you can access the proxy from anywhere without worrying about network topologies or needing Tailscale installed on the client device. It also makes it really easy to proxy services across multiple sites and reduce reliance on bandwidth constrained solutions like Tailscale's Funnel or Cloudflare's tunnels. For example, say that you're not on your home LAN and you want to hit that reverse proxy from a non Tailscale client (for me this is commonly a relatives phone wanting to stream an audiobook from my self-hosted audiobookshelf instance), they need to be able to route those packets to Caddy somehow in order for the data to flow. You need to solve for your WAN IP changing (dynamic dns), and open ports in your firewall. This is what I did for many years before Tailscale came along. But this solution removes all those pain points with the slight exception of needing to pay for a cloud VPS (but that can be useful for other things besides just this). HTH -Alex
@iamropel
@iamropel 9 часов назад
Will this solution through VPC take on the limited transfer bandwidth? Or how is the direct connection made between a remote peer (which is not connected to Tailscale) browsing into the server through VPC?
@manishxmadan
@manishxmadan 3 дня назад
By using this method, will streaming jellyfin work when under CGNAT?
@Tailscale
@Tailscale 3 дня назад
Yup! 👍
@AZmotion
@AZmotion 4 дня назад
Great video! What's the benefit of using a VPS, rather than just running Caddy on the same local network as Jellyfin? It kinda seems like an unecessary middle man to me. Thanks again :)
@keywal
@keywal 4 дня назад
Was literally about to ask this! Nice wizard work but its not necessary. I've Traefik running in an LXC with Tailscale installed in there too. Works perfectly fine.
@TheDark0rb
@TheDark0rb 3 дня назад
CGNAT, ISP's that block 80/443 inbound etc. unfortunately not all of us can get public external IP's these days :(
@Tailscale
@Tailscale 2 дня назад
A VPS means you can access the proxy from anywhere without worrying about network topologies or needing Tailscale installed on the client device. It also makes it really easy to proxy services across multiple sites and reduce reliance on bandwidth constrained solutions like Tailscale's Funnel or Cloudflare's tunnels. For example, say that you're not on your home LAN and you want to hit that reverse proxy from a non Tailscale client (for me this is commonly a relatives phone wanting to stream an audiobook from my self-hosted audiobookshelf instance), they need to be able to route those packets to Caddy somehow in order for the data to flow. You need to solve for your WAN IP changing (dynamic dns), and open ports in your firewall. This is what I did for many years before Tailscale came along. But this solution removes all those pain points with the slight exception of needing to pay for a cloud VPS (but that can be useful for other things besides just this). HTH -Alex
@wojtek-33
@wojtek-33 2 дня назад
Not sure why people think opening a port to reverse proxy is secure. It's more secure than nothing. But a reverse proxy is not an impenetrable layer. A professional solution is just much safer.
@keywal
@keywal День назад
For my family, the client is the price of entry. Only devices I authorise on Tailscales admin console can access the container that contains the reverse proxy. As far as DNS goes I simply have wildcards in Cloudflare pointing at the LAN IP address of the container so I achieve 2 things - 1 URL resolution inside my LAN without the client and outside with the client installed. 2 Don't need to host the DNS myself either. No open ports, no care of what public IP address I have nor any care about unauthorised access as I have approved only the devices that I want to have access. Having the VPS just allows anyone with the URL to access stuff inside my network. Unless of course you do what I did but then there's no point in hosting it elsewhere and having the pay for it.
@rmkr34
@rmkr34 5 дней назад
Why not serve and funnel for this use case?
@Tailscale
@Tailscale 5 дней назад
Serve is for inside your tailnet Funnel is bandwidth constrained for QoS reasons and therefore not suited for video streaming specifically
@rmkr34
@rmkr34 5 дней назад
Ahh didn’t realize the bandwidth constraint! Thanks.
@Tailscale
@Tailscale 5 дней назад
Same is true of things like Cloudflare tunnels too, they specifically have ToS terms which restrict things like video streaming. With this solution you have no such restrictions. -Alex
@rmkr34
@rmkr34 5 дней назад
@@Tailscale does the funnel bandwidth limit appear if the funnel flag shows up on the client in the console even when the serve config has funnel set to false?
@rmkr34
@rmkr34 5 дней назад
Meaning would it impact serve bandwidth in that case.
@Feerab
@Feerab 4 дня назад
Pure digital ocean markings campaign ❤
@luispedrocamacho
@luispedrocamacho 4 дня назад
What are your sterio speakers?
@luispedrocamacho
@luispedrocamacho 4 дня назад
OK, it appears to be KEF LS50, they seem pretty nice!
@Tailscale
@Tailscale 4 дня назад
They are :) Bought them 10 years ago as a graduation gift to myself and haven’t ever felt the need to replace them. Paired with a 10” sub they more than fill my office with glorious noise. -Alex
@Issa-vc6yf
@Issa-vc6yf День назад
I Remotely access anything from anywhere with using tailscale
Далее
Remotely access any system with a PiKVM and Tailscale
21:09
A deep dive into using Tailscale with Docker
31:58
Просмотров 57 тыс.
⚡ #RodrygoGoes ✖️ #Mbappé ⚽ #UCL
00:11
Просмотров 401 тыс.
Mini bag sealer
00:58
Просмотров 7 млн
Get started with Docker and Tailscale
14:04
Просмотров 16 тыс.
All You Need Is An Old Device...
28:13
Просмотров 13 тыс.
Proxmox Automation with Proxmox Helper Scripts!
24:15
Remotely access and share your self-hosted services
18:05
⚡ #RodrygoGoes ✖️ #Mbappé ⚽ #UCL
00:11
Просмотров 401 тыс.