I have an #OpenWRT router. Let’s say I install Tailscale on it and want to create an interface that specifically routes to one of my exit nodes. Can I do that?

Everything I’ve seen about Tailscale on OpenWRT just provides direct router access to the tailnet (100.x.x.x), but I specifically want to route certain traffic to an exit node.

Can I do this? Do me proud, Fediverse! Hoping I can get good answers here without resorting to Reddit.

  • tvcvt
    link
    fedilink
    English
    arrow-up
    1
    ·
    8 months ago

    I’ve done something similar, though not with openwrt. There may be a decent way to do this on the firewall, but I ended up using the ACLs available from the Tailscale console.

    I removed the default allow all rule. I made a group called admins that can access everything and then added a set of routes that everyone on the tail net could access.

    I’ve only recently set this up, but initial testing seems to have this working as hoped.