Sign inSign up

ofwh/derper

By ofwh

Updated 3 days ago

Image
0

910

ofwh/derper repository overview

Derper

docker workflow docker pulls platfrom

Setup

required: set env DERP_DOMAIN to your domain

docker run -e DERP_DOMAIN=derper.example.com -p 80:80 -p 443:443 -p 3478:3478/udp ghcr.io/ofwh/derper
envrequireddescriptiondefault value
DERP_DOMAINtruederper server hostnameyour-hostname.com
DERP_CERT_DIRfalsedirectory to store LetsEncrypt certs(if addr's port is :443)/app/certs
DERP_CERT_MODEfalsemode for getting a cert. possible options: manual, letsencryptletsencrypt
DERP_ADDRfalselistening server address:443
DERP_STUNfalsealso run a STUN servertrue
DERP_STUN_PORTfalseThe UDP port on which to serve STUN.3478
DERP_HTTP_PORTfalseThe port on which to serve HTTP. Set to -1 to disable80
DERP_VERIFY_CLIENTSfalseverify clients to this DERP server through a local tailscaled instancefalse
DERP_VERIFY_CLIENT_URLfalseif non-empty, an admission controller URL for permitting client connections""
DERP_VERIFY_CLIENT_URL_FAIL_OPENfalsewhether to fail open (allow access) if the DERP_VERIFY_CLIENT_URL is unreachabletrue

Usage

Fully DERP setup offical documentation: https://tailscale.com/kb/1118/custom-derp-servers/

Client verification

In order to use DERP_VERIFY_CLIENTS, the container needs access to Tailscale's Local API, which can usually be accessed through /var/run/tailscale/tailscaled.sock. If you're running Tailscale bare-metal on Linux, adding this to the docker run command should be enough: -v /var/run/tailscale/tailscaled.sock:/var/run/tailscale/tailscaled.sock


Fork from kaaanata/derper-docker

Tag summary

Content type

Image

Digest

sha256:97f003c16

Size

82.6 MB

Last updated

3 days ago

docker pull ofwh/derper