← Back to context

Comment by zchrykng

2 hours ago

You do need a DNS service with API access for automatically creating/renewing the certificates for things that are only served over tailscale though, since they aren't publicly accessible for the letsencrypt servers to talk to.

I've got a Caddy instance setup which proxies my traffic and has dead easy integration for domain DNS registration. Super handy