• lypticdna@feddit.uk
    link
    fedilink
    arrow-up
    4
    ·
    8 months ago

    I have a stack in place built around Tailscale. I mean, this may not be the best route but, hey, it works for me.

    So I have Tailscale running across my devices. Within Tailscale, I have enabled Mullvad Exit Nodes for some privacy control. Then I have overridden the default DNS setting with NextDNS.

    Within NextDNS I have a standard profile with some ad and telemetry blocking which is typically for the family devices and then I have a disgustingly pimped up profile for my main devices with a hell of a lot blocked, including domains that I do not care for (facebook for example).

    The pros are that I can control all connections easier, even when out of my home network. That said, it takes some setting up to ensure I don’t bork connections. And, yes, I learnt that the hard way when I blocked all ‘meta’ tools across my whole network and the kids lost it!

    • BearOfaTime@lemm.ee
      link
      fedilink
      arrow-up
      2
      arrow-down
      1
      ·
      8 months ago

      So all your devices access the internet through Tailscale to home, where you use NextDNS to filter, am I reading that right?

      • lypticdna@feddit.uk
        link
        fedilink
        arrow-up
        2
        ·
        8 months ago

        Not quite. They are network linked through Tailscale but typically running through a Mullvad VPN exit node. The NextDNS is baked into Tailscale too.

        This gives me access to my home devices (including self hosted services, etc.) from out and about on the secure Tailscale network and connect to the Internet through a Mullvad VPN connection but that is further supported by the NextDNS which ensure devices are blocked from ads, trackers, telemetry, etc.

        I only chose this route because I want an easy way to manage my whole network of connected devices without having to do a setup on each one individually.

        Don’t get me wrong, there may be a better way but this has just worked well for me.

        • BearOfaTime@lemm.ee
          link
          fedilink
          arrow-up
          1
          arrow-down
          1
          ·
          edit-2
          8 months ago

          Ah, ok, thanks for clarifying.

          I was planning on Tailscaling to home so all my devices could benefit from PiHole, I didn’t realize TS had Mullvad and NextDNS baked in!

          Thanks for the info, this is just what I was looking for.

          I used Hamachi for years to have a mesh network. Talked with them probably 10 years ago looking for an Android and iOS client. Fortunately TS stepped up and it’s a much better product than Hamachi ever was. With it being Linux friendly, I can run it on Raspberry Pis that I give to my family for remote management.

          Lol, someone downvoted this. Hahaha, guess someone’s stalking my comments now.