this post was submitted on 05 Nov 2023
58 points (95.3% liked)

Selfhosted

40152 readers
628 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 1 year ago
MODERATORS
 

Hello I've been using cloudflare to get remote access for the couple apps I selfhost, but lately I've been hearing about the wonders of tailscale.

It seems that the free tier is enough for my use. Which would be a safe option to have remote access for my 3D printer? Also how are both in terms of privacy?

you are viewing a single comment's thread
view the rest of the comments
[–] brakenium@lemm.ee 2 points 1 year ago (1 children)

Tailscale shouldn't be getting your data anyway. It's a mesh VPN that directly connects devices after their auth server gives out certs and let's clients know where to find another. If you're not comfortable with using their server for this I'd suggest you look into the open source headscale server. I do remember it routing through their server in the rare case NAT punching doesn't work

[–] keyez@lemmy.world 1 points 1 year ago (1 children)

Thanks for the info. Though I fail to see how it's much different than cloudflare tunnels, I'll probably stick with that for the near future but will try out tailscale funnel in the future.

[–] EncryptKeeper@lemmy.world 1 points 1 year ago (1 children)

It’s not functionally different from Cloudflare tunnels, that’s the point. You get the same functionality without giving all your data to a corporation.

[–] keyez@lemmy.world 3 points 1 year ago (2 children)

I'm curious how if they're functionally the same, one has all the data and the other "shouldn't be getting your data anyway". Was mostly curious to hear about informed differences in the products but clearly not going to get that, cheers.

[–] EncryptKeeper@lemmy.world 1 points 1 year ago

Because Cloudflare decrypts all your traffic, and Tailscale doesn’t. It’s still functionally the same though because you accomplish the game goal in a similar manner, but one is privacy respecting and one isn’t.

[–] brakenium@lemm.ee 1 points 1 year ago (1 children)

You can selfhosted tailscale so that they don't have any access. You can't with cloudflare tunnels as far as I know. Tailscale's client is open source, so is their Headscale server which originally was developed by a 3rd party. You can look into the code for that. Not sure what you'd want me to say. If you really want to be informed I'd inspect the code yourself

[–] keyez@lemmy.world 2 points 1 year ago (1 children)

I'm self hosting cloudflared right now, the TLS from cloudflare terminates in a container in my network and then goes to my reverse proxy container for my local network. I'm definitely going to poke around tailscale and their funnels for the future, I'm just playing devils advocate for those replying not knowing anything about cloudflare tunnels yet saying they're the wrong choice.

[–] brakenium@lemm.ee 1 points 1 year ago

Cloudflare tunnels definitely aren't wrong, you're just not entirely using open source software. It's a very good option if you need to open things to the public or want to learn more about cloud services