As in, would they be able to access your server?

  • Unmapped@lemmy.ml
    link
    fedilink
    arrow-up
    28
    ·
    19 days ago

    From what I understand tailscale is basically wire guard but made convenient. And how they do that is by managing you wire guard keys for you. So I would have assumed they could use the keys to access your network. HOWever while trying to look into this just now I found out tailnet lock exist and it says “When tailnet lock is enabled, even if Tailscale infrastructure is malicious or hacked, attackers can’t send or receive traffic on your tailnet.”

    • Quail4789@lemmy.ml
      link
      fedilink
      English
      arrow-up
      2
      ·
      19 days ago

      How is NAT travelsal handled if you want to connect two devices via WG? That’s what Tailscale primarily does.

      • Unmapped@lemmy.ml
        link
        fedilink
        arrow-up
        2
        ·
        19 days ago

        Yeah true, that’s part of making wire guard more convenient. You have to have a 3rd connection for that I think. In tailscales case it the headscale server.