• exu@feditown.com
    link
    fedilink
    English
    arrow-up
    2
    ·
    19 hours ago

    Most VMs only run containers, but I have supporting services on every host as well. Stuff like the mesh VPN, monitoring agent or firewall.
    If I want a quick overview, a quick systemctl status will tell me everything I need to know.

      • exu@feditown.com
        link
        fedilink
        English
        arrow-up
        1
        ·
        5 hours ago

        I use Yggdrasil now with a whitelist of public keys. Though I’m thinking about redoing my architecture in general to make key distribution easier, have more automated DNS entries and also use the tunnel for any node to node communication.

        Before that I tried Tailscale with Headscale, but I didn’t want to have a single node responsible for the network and discovery.

        • barsquid@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          3 hours ago

          That’s very interesting. Once you connect something to your mesh you can access the rest of the mesh by IP? What is the gateway in that case?