Secure remote access
UniFi + Tailscale + least privilege — remote admin without exposing the LAN.
- Problem
- Homelab and remote admin needed to be reachable without putting management planes on the public internet.
- What I built
- UniFi for the LAN, Tailscale for identity-aware access, and least privilege on who can reach which host.
- Result
- Remote access that is specific, logged, and not a port-forward. The network stays closed; the people who need in still get in.