Comment by dongcarl
4 days ago
(Carl from Obscura here)
I could be wrong but in Tailscale if you use Mullvad as an exit node, the traffic flows directly from your device to Mullvad's servers.
Whereas with Obscura, your traffic flows to the Obscura relay, then the Mullvad exit.
Yes, but your tailnet IP is what is provided to Mullvad's servers. Not your public IP or personally identifiable information (according to Tailscale).
I'm under the impression that my personal device isn't the WireGuard endpoint for the Mullvad connection, Tailscale is.
I believe if your device connects directly to Mullvad they will have your real IP (to know where to send reply packets)
After further research, I was under the wrong understanding. You are correct that Mullvad still receives your public IP even if routed through Tailscale.
Obviously seems to be an industry-wide problem, but I hope both you and Tailscale can consider alternative endpoints for those who don't want to rely on the Mullvad infrastructure.
Diversification of endpoint providers will help insolate your company from a collapse if Mullvad decides to sell out, and make you more attractive to former Mullvad customers turned off by their Co-Founder's investment of their privacy dollars into extreme right-wing politics.
As far as I know, they don't plan to part ways with the "great replacement theory" executive staff being paid enough to be the highest contributor to the Swedish far-right party Örebropartiet. You have to question whether their highest-paid staff's loyalty to far-right politics influences Mullvad decisions and future partnerships.
Cross the Örebropartiet, and you might be issuing refunds a year from now.