Glad you got it working. A fully functional Tailnet can be a beautiful thing!Hi all I've put everything on it several times, read a lot and can't find anything that I'm doing wrong. But In Clint's phone mode, the app was unchecked. That was it, I read a lot, learned a lot, and that at my age. 63. Thank you for your help.
I am very happy with it thank you for the hard work to make itGlad you got it working. A fully functional Tailnet can be a beautiful thing!![]()
Excellent, well done and super pleased for you. If you get a moment could you please take a wee screenshot of the unchecked item in the App and post it, it might help someone else one day, maybe a 64 yo, who knowsHi all I've put everything on it several times, read a lot and can't find anything that I'm doing wrong. But In Clint's phone mode, the app was unchecked. That was it, I read a lot, learned a lot, and that at my age. 63. Thank you for your help.
Excellent. I don’t have an android phone, but I’m guessing you’re using this. I learnt somethingAt split tunnel in the
# Health check:
# - flushing nat/ts-postrouting: running [/usr/sbin/iptables -t nat -F ts-postrouting]: exit status 1: iptables: Invalid argument. Run `dmesg' for more information.
That's an interesting one. I don't have that on neither of my routers running Tailscale. Maybe something got gummed up and a reboot is in order?Hi Viktor, got a funny retsart message that I wasn;t expecting today, well after I updated ot 1.88.3. Will watch it.
Also noticed a message I had not seen in that Health check before?
Code:# Health check: # - flushing nat/ts-postrouting: running [/usr/sbin/iptables -t nat -F ts-postrouting]: exit status 1: iptables: Invalid argument. Run `dmesg' for more information.
Seems to have fixed it...That's an interesting one. I don't have that on neither of my routers running Tailscale. Maybe something got gummed up and a reboot is in order?
Software will be software. There will always be flaws.Seems to have fixed it...
Flaws … BastilleSoftware will be software. There will always be flaws.![]()
With all due respect, you're really going to have to get better at asking questions if you want the anwers to assist you.Question split-tunneling for Tailscale It is possible that it now passes everything I can't really find how to do
I probably can’t help with the full cone NAT queries but could you share your Tailmon config line and confirm you followed the URL at setup to Tailscale admin and in that browser page, accepted that device and (maybe) setup as a subnet router ?Hi. I installed Tailmon yesterday but no matter what I try I can't seem to get a direct connection to the router itself from outside the network.
Yes, I accepted the device on the Tailscale admin page and approved the subnet routes. Are these the Tailmon config lines you mean?I probably can’t help with the full cone NAT queries but could you share your Tailmon config line and confirm you followed the URL at setup to Tailscale admin and in that browser page, accepted that device and (maybe) setup as a subnet router ?
Yup. Ok sorry I thought you couldn’t access the WebGui of the Router. So it’s just about performance from a speed perspective and it always going through a DERP rather than direct?Are these the Tailmon config lines you mean?
Sorry @Joel_w I really can't follow what you're asking. You talk about NAT (full cone or symmetric), "direct connection", port forwarding, UPnP. None of this has anything to do with TAILMON (Tailscale). Tailscale is a VPN.Hi. I installed Tailmon yesterday but no matter what I try I can't seem to get a direct connection to the router itself from outside the network. By switching to a full cone NAT instead of symmetric I seem to get a direct connection to my other devices on my network but never to the router. To troubleshoot I've tried to forward port 41641 to 192.168.0.1, and also temporarily enable UPnP, but it makes no difference when it comes to the router.
Maybe I'm wrong but I'm thinking I need a direct connection to the router since it gives access to the rest of the internal devices that don't run Tailscale, right? Now when I try to reach them I get slow speeds and ping so they must be relayed.
And by the way, is just enabling a full cone NAT the most secure way to get a direct connection on Asus Merlin? UPnP should be much worse, and I'm thinking forwarding a port would be too, right?
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!