Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

No doubt, Tailscale people are awesome.

From a security perspective, I would design this feature differently. If the capability to change the control server exists, then, rather than hiding it, I would want to see a prominent UI element displaying the control server name, url and "more details" to the user to see before they connect/login.

This is important to prevent any social engineering based security hacks.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: