Networking Overview
Status: 🌐 Dual-Tunnel Internet Access Architecture
Updated: September 8, 2025
Architecture: HostRegexp routing with Tailscale + Cloudflare support
🚀 Quick Start - Connect Your Cluster to the Internet
Your cluster works perfectly on .localhost domains for development. Ready to connect to the internet?
You have two options - both are supported by your existing manifests:
Option A: Tailscale Funnel 🔵 (Quick & Free)
- Get online in: 15 minutes
- Cost: Free
- URLs:
https://whoami.your-device.ts.net - Perfect for: Personal projects, demos, team development
Option B: Cloudflare Tunnel ⚡ (Professional)
- Get online in: 45 minutes
- Cost: ~$10-15/year (domain)
- URLs:
https://whoami.your-domain.com - Perfect for: Business sites, production apps, custom branding
👉 Jump to tunnel selection guide
Introduction
This document provides a complete guide to:
- Internet access options - Choose between Tailscale Funnel and Cloudflare Tunnel
- Architecture overview - How the dual-tunnel system works
- Setup guidance - Get your services online quickly
- DevOps access - Secure administration with Tailscale VPN
🌐 Internet Access Options: Tailscale vs Cloudflare
Your Current Status ✅
You have successfully deployed your cluster and everything works on development domains:
- ✅
http://whoami.localhost- Working great - ✅
http://openwebui.localhost- AI chat accessible - ✅
http://authentik.localhost- Authentication ready - ✅ All services running smoothly
Next Step: Connect to the internet so others can access your services.
🤔 Which Option Should You Choose?
Choose Tailscale Funnel if you want:
✅ Quick & Free Setup
- No domain purchase required
- Automatic HTTPS certificates
- Working in 15 minutes
✅ Personal/Learning Projects
- Perfect for demos and testing
- Share with friends easily
- No ongoing domain costs
✅ Built-in Security
- Only people you invite can access
- VPN-level security by default
- Fine-grained access controls
✅ Simple Management
- One dashboard for everything
- No DNS configuration needed
- Automatic updates and renewal
Best for: Personal projects, learning, demos, team development, secure internal tools
Choose Cloudflare Tunnel if you want:
✅ Professional Domains
- Your own custom domain (
yourcompany.com) - Professional appearance for clients
- Brand consistency