Homelab Part 8: Tailscale Remote Access Behind CGNAT
In Part 7, I added Snort and T-Pot telemetry. Then a practical problem changed the order of the project: I needed to work remotely while the lab stayed at home. I did not want to expose pfSense management to the public internet. Tailscale became the clean remote access layer. What I Built pfSense: Tailscale subnet router Advertised: 10.10.0.0/16 Clients: Mac and phone Recovery: Tailscale also installed directly on Proxmox Inbound ports: none exposed to the internet ‹ › ...