Update config.yaml

This commit is contained in:
okxlin 2024-02-04 22:24:20 +08:00 committed by GitHub
parent 817a9b0d7f
commit e0446e81a7
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -10,7 +10,7 @@
#
# https://myheadscale.example.com:443
#
server_url: https://myheadscale.example.com:443 #提示:最终的服务器连接,改我
server_url: https://myheadscale.example.com:443
# Address to listen to / bind to on the server
#
@ -94,6 +94,16 @@ derp:
#
private_key_path: /var/lib/headscale/derp_server_private.key
# This flag can be used, so the DERP map entry for the embedded DERP server is not written automatically,
# it enables the creation of your very own DERP map entry using a locally available file with the parameter DERP.paths
# If you enable the DERP server and set this to false, it is required to add the DERP server to the DERP map using DERP.paths
automatically_add_embedded_derp_region: false
# For better connection stability (especially when using an Exit-Node and DNS is not working),
# it is possible to optionall add the public IPv4 and IPv6 address to the Derp-Map using:
ipv4: 1.2.3.4
ipv6: 2001:db8::1
# List of externally available DERP maps encoded in JSON
urls:
- https://controlplane.tailscale.com/derpmap/default
@ -107,8 +117,8 @@ derp:
# paths:
# - /etc/headscale/derp-example.yaml
paths: []
#paths: #提示这个区域取消注释则启用derp转发配置然后要把上一行加#号注释掉
# - /etc/headscale/derp.yaml #提示这个区域取消注释则启用derp转发配置
#paths:
# - /etc/headscale/derp.yaml
# If enabled, a worker will be set up to periodically
# refresh the given sources and update the derpmap
@ -207,7 +217,7 @@ dns_config:
override_local_dns: false
# List of DNS servers to expose to clients.
nameservers: #提示这里是DNS相关自己考虑要不要改
nameservers:
- 223.5.5.5
- 1.1.1.1
@ -255,7 +265,7 @@ dns_config:
# `base_domain` must be a FQDNs, without the trailing dot.
# The FQDN of the hosts will be
# `hostname.user.base_domain` (e.g., _myhost.myuser.example.com_).
base_domain: example.com #提示tailscale局域网的自定义域名随便设置
base_domain: example.com
# Unix socket used for the CLI to connect without authentication
# Note: for production you will want to set this to something like: