Which route did you go for your homeland, a tunnel to your services or setting up tail scale/wireguard and access them on your trailer?
Just Wireguard on a router, but I’m thinking Netbird.
WG can be a bit PITA to set up, but once you do, it just works. What I would to have is more fine grained control over who goes where if I were to expose some of the services to friends.
Wireguard.
Dunno if Cloudflare does effective auth for the tunnel or if you have to set that up yourself, but I don’t bother trying to expose services to the internet in any way because some of this stuff was just never designed for proper web security (cough Jellyfin).
It’s still worth setting up a wildcard cert with ACME so you get nice https and a real domain.
Cloudflare has some opt-in auth. Mail-OTP is a nice balance imo: You can allowlist mail addresses per service/subdomain and set expiry for each. Then for access, you first have to enter the mail address, get the OTP and then access the service.
So, nobody without access to allowed mail addresses even gets to knock on you door.
But yeah, that’s why I think about going tail scale: why bother having something exposed when not needed?
I just think, some services might be nice to provide to friends, too - and having them connect to my tailnet for this is a bit too much friction, I guess
I am very happy with Tailscale
Wireguard
Netbird via a free cloud VM. Works great.
Nice, I’ll look into that!
Who provides free cloud VM?
This is the way
tailscale. works perfectly, the only problem is needing a google acc for login
And that years back they moved their servers from Canada to the US. That’s when I dropped TS and just did wireguard by hand.
You can use GitHub.
That’s not really a solution.
the only problem is needing a google acc for login
You can use e-mail now.

No, you cannot. Putting in your emails just redirects to the identity provider you used when signing up. If you try to create an account you’ll see that email’s not a option.
is it possible to switch to email from my google acc tied account? or do i need to create a new one?
I haven’t looked into it yet, I’m in the same position of using Google to login.
I just noticed that the login page changed.
I believe registration is limited to a third party/OIDC. The login page is different to sign-up
How about both? I run the evil Cloudflare Tunnels/Zero Trust with Tailscale as an overlay on the server.
I do run wireguard on my router, but the main reason is ad blocking, not hiding services. Most services are publicly exposed.
Pangolin on a vps.
isn’t it awesome? i am scared to update it too far for an unknown reason
It’s opensoursrso we should be able to roll back.
I have wireguard, it’s supported by my router (Fritzbox).
same here, took me 7m to set this up on OPNsense with FritzBox
Pangolin on a free Oracle VPS.
is there a bandwidth/throughput limit on Oracle VPS?
Something like 10TB. I’m an incredibly heavy user and I’d have to quadruple all of my usage, including home, to hit it.
- option 3: self-host Netbird control plane
- option 4: use Netbird’s reverse proxy
Headscale on fly.io
Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I’ve seen in this thread:
Fewer Letters More Letters IP Internet Protocol VPN Virtual Private Network VPS Virtual Private Server (opposed to shared hosting)
3 acronyms in this thread; the most compressed thread commented on today has 6 acronyms.
[Thread #265 for this comm, first seen 30th Apr 2026, 19:30] [FAQ] [Full list] [Contact] [Source code]
Asked my ISP for a public IP, exposed all things that can handle that to the public. Custom Wireguard server for VPN







