• 1 Post
  • 41 Comments
Joined 1 year ago
cake
Cake day: July 29th, 2023

help-circle




















  • I have put

    127.0.0.1/8, 10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16, 100.64.0.0/10

    In Networking > Server address settings > LAN networks

    No idea if this is correct/secure/best practice but it works

    Note the description of this setting:

    Comma separated list of IP addresses or IP/netmask entries for networks that will be considered on local network when enforcing bandwidth restrictions. If set, all other IP addresses will be considered to be on the external network and will be subject to the external bandwidth restrictions. If left blank, only the server’s subnet is considered to be on the local network.

    Also while I have your attention, set your Tailscale network to use Quad9 (9.9.9.9) as the global dns server. This will somewhat limit the amount of snooping your ISP can do into your internet activity.

    https://tailscale.com/kb/1054/dns/

    Or you can run PiHole in a docker container, put its IP into Tailscale and completely get rid of all ads as long as you’re connected to Tailscale!