OPNsense Forum

English Forums => Virtual private networks => Topic started by: jmcgee on December 14, 2023, 12:48:11 AM

Title: tailscale server setup
Post by: jmcgee on December 14, 2023, 12:48:11 AM
I am using Tmobile for internet access, and want to use Tailscale to remotely access my internal network and cruise internet using the home connection.
I am using this guide:
https://tailscale.com/kb/1097/install-opnsense

I put the Android tailcale client on my phone, can see the opnsense router, but have no access to internal network.  I believe I do have access outside the opnsense machine to the internet.

Does any one know what the relative benefits of Static Port Mapping or NAT-PMP.  I used the instructions for Static Port Mapping, but got stuck at

In your ACLS, set randomizeClientPort.

{
  // ACLs and other configurations
  "randomizeClientPort": true
}

I found this in /usr/local/opnsense/mvc/app/models/OPNsense/Zerotier/ACL
<acl>
    <page-vpn-zerotier>
        <name>VPN: Zerotier</name>
        <patterns>
            <pattern>ui/zerotier/*</pattern>
            <pattern>api/zerotier/*</pattern>
        </patterns>
    </page-vpn-zerotier>
</acl>

Title: Re: tailscale server setup
Post by: bartjsmit on December 14, 2023, 07:57:59 AM
You need to configure the OPNsense Tailscale node in the machine dashboard. Alex has the skinny:

https://www.youtube.com/watch?v=Uzcs97XcxiE

Bart...