Compare commits

...
22 Commits
Author SHA1 Message Date
github-actions[bot] f420e7d24c Update Tailscale to v1.92.1 2025-12-15 11:02:54 +00:00
Weston BliedenandGitHub 3dc49f1254 Enhance Tailscale version retrieval logic
Updated the workflow to check for ARM build availability and fallback to the latest version if not found.
2025-12-15 11:58:09 +01:00
github-actions[bot] 2005ba32db Update Tailscale to v1.90.9 2025-11-26 15:08:35 +00:00
github-actions[bot] 1f9c6a9e45 Update Tailscale to v1.90.8 2025-11-20 14:26:56 +00:00
github-actions[bot] 6148fc3298 Update Tailscale to v1.90.6 2025-11-03 03:52:08 +00:00
github-actions[bot] bd60c24b5b Update Tailscale to v1.90.3 2025-10-28 07:40:27 +00:00
github-actions[bot] 7926c58b3d Update Tailscale to v1.90.2 2025-10-27 03:53:33 +00:00
github-actions[bot] 6bdca7eadd Update Tailscale to v1.90.1 2025-10-23 20:07:52 +00:00
Weston BliedenandGitHub 8b941b08a5 Update README for Tailscale ACAP user space mode
Removed limitation note for Tailscale ACAP user space mode.
2025-10-22 21:36:54 +02:00
Weston BliedenandGitHub d157a91bae Fix build_needed flag logic in workflow 2025-10-22 21:31:29 +02:00
Weston BliedenandGitHub b35ed437b5 Fix build_needed condition in build workflow 2025-10-22 21:25:51 +02:00
Weston BliedenandGitHub cb390384a1 Update tailscaled command to include SOCKS5 server 2025-10-22 21:18:43 +02:00
Weston BliedenandGitHub 533fc53040 Update Tailscaled command to include SOCKS5 server 2025-10-22 21:17:11 +02:00
Weston BliedenandGitHub 0a85c286b4 Merge pull request #26 from kaleaht/SOCKS5-proxy
feat: ability to route traffic to other tailnet nodes using SOCKS5 proxy
2025-10-22 21:13:05 +02:00
Ahti Kalervo d7e7b63952 feat: ability to route traffic to other tailnet nodes using SOCKS5 proxy 2025-10-22 21:55:10 +03:00
Weston BliedenandGitHub ed7643b2eb Update README.md 2025-09-29 10:53:27 +02:00
Weston BliedenandGitHub c4b24aee40 Update README.md 2025-09-29 10:51:24 +02:00
Weston BliedenandGitHub bec473f0a8 Update README.md 2025-09-29 09:35:34 +02:00
Weston BliedenandGitHub 5278677098 Update README.md 2025-09-29 09:33:20 +02:00
github-actions[bot] c21f640622 Update Tailscale to v1.88.3 2025-09-29 03:38:36 +00:00
Weston BliedenandGitHub 83e108bb05 Update README.md 2025-09-15 13:49:03 +02:00
Weston BliedenandGitHub 38d7af6c86 Update build.yml 2025-09-15 07:58:02 +02:00
10 changed files with 128 additions and 71 deletions
+23 -2
View File
@@ -20,8 +20,28 @@ jobs:
- name: Get latest Tailscale version - name: Get latest Tailscale version
id: tailscale_version id: tailscale_version
run: | run: |
VERSION=$(curl -s https://api.github.com/repos/tailscale/tailscale/releases/latest | jq -r .tag_name) # 1. Start from GitHub latest
VERSION=${VERSION#v} # remove leading 'v' GH_TAG=$(curl -s https://api.github.com/repos/tailscale/tailscale/releases/latest | jq -r .tag_name)
GH_VERSION=${GH_TAG#v}
echo "GitHub latest: $GH_VERSION"
# 2. See if static ARM build exists for that version
if curl -sfI "https://pkgs.tailscale.com/stable/tailscale_${GH_VERSION}_arm.tgz" > /dev/null; then
VERSION="$GH_VERSION"
echo "Using GitHub latest (has ARM package): $VERSION"
else
echo "No ARM package for $GH_VERSION, falling back to latest version on pkgs.tailscale.com"
# 3. Derive latest version that actually has an ARM tarball
VERSION=$(
curl -s https://pkgs.tailscale.com/stable/ \
| grep -o 'tailscale_[0-9.]*_arm\.tgz' \
| sed -E 's/^tailscale_([0-9.]+)_arm\.tgz$/\1/' \
| sort -V | tail -n1
)
echo "Fallback version: $VERSION"
fi
echo "RELEASE_VERSION=$VERSION" >> $GITHUB_ENV echo "RELEASE_VERSION=$VERSION" >> $GITHUB_ENV
echo "version=$VERSION" >> $GITHUB_OUTPUT echo "version=$VERSION" >> $GITHUB_OUTPUT
@@ -66,6 +86,7 @@ jobs:
if: env.build_needed == 'true' if: env.build_needed == 'true'
run: | run: |
mkdir -p build mkdir -p build
rm -rf releases
mkdir -p releases mkdir -p releases
for folder in */ ; do for folder in */ ; do
+94 -58
View File
@@ -1,107 +1,143 @@
# The Tailscale installer ACAP # Tailscale Installer ACAP for Axis Cameras
This ACAP packages the scripts and files required to install the Tailscale VPN client on Axis Cameras. This repository contains an **ACAP package** that installs the [Tailscale VPN client](https://tailscale.com/) on Axis cameras.
https://tailscale.com/changelog/ - ✅ Secure remote access to cameras
- ✅ Easy to install via EAP package
- ✅ Works on **Axis OS 12+** (non-root version)
- ✅ Based on **WireGuard VPN** technology
The "ROOT" versions require root privileges on the camera and will not work on OS 12 up. [![Releases](https://img.shields.io/github/v/release/Mo3he/Axis_Cam_Tailscale)](https://github.com/Mo3he/Axis_Cam_Tailscale/releases)
[![License](https://img.shields.io/github/license/Mo3he/Axis_Cam_Tailscale)](LICENSE)
[![Sponsor](https://img.shields.io/badge/sponsor-%E2%9D%A4-lightgrey?logo=github)](https://github.com/sponsors/Mo3he)
If you like my work and want to help me to keep maintaining it, a sponsor would be amazing, every bit helps. ---
[:dollar: Sponsor](https://github.com/sponsors/Mo3he) ## 📑 Table of Contents
## Testers needed - [📥 Installation](#-installation)
- [🚀 Usage](#-usage)
- [🔄 Updating Tailscale](#-updating-tailscale)
- [🧪 Testers Needed](#-testers-needed)
- [🎉 Good News](#-good-news)
- [🎯 Purpose](#-purpose)
- [🔗 Useful Links](#-useful-links)
- [🖥️ Compatibility](#️-compatibility)
- [⭐ Star History](#-star-history)
- [💖 Support](#-support)
I have added a new "custom" version which allows you to set a custom server and auth key for use of headscale. ---
Click the three dots then "settings" to add your details. ## 📥 Installation
If you get a tls error restart the app.
Please give it a try and let me know if it works well or if you have issues. The recommended way is to use the **prebuilt `.eap` file** from the [Releases page](https://github.com/Mo3he/Axis_Cam_Tailscale/releases).
## Good news, everyone! 1. Log into your Axis camera.
2. Go to **Apps → Add App**.
3. Upload the `.eap` file.
We have found a way to run the Tailscale ACAP without root privileges allowing it to run on Axis OS 12. Once installed:
- Start the app.
- Click **Open** to view logs and get your Tailscale authentication URL.
- On uninstall, all changes/files are removed.
Please note this new version runs in user space networking mode and therefore has some limitations, most notably the camera will not be able to connect out to other Tailscale nodes. > ⚠️ You’ll need a [Tailscale account](https://tailscale.com/) to authenticate.
This does not affect the normal use case of using Tailscale to connect to the camera.
If you require full functionality, please do not upgrade to Axis OS 12 and use the version marked "ROOT".
The changes are implemented from version 1.68.1 of the acap. ---
Thank you for your continued support. ## 🚀 Usage
## Purpose - Runs a startup script to set permissions and launch Tailscale.
- View logs via the **Open** button in the app.
- Authenticate using the provided URL.
Adding a VPN client directly to the camera allows secure remote access to the device without requiring any other equipment or network configuration. ---
Tailscale achieves this in a secure, simple to setup and easy to use way.
Tailscale is based on WireGuard VPN tunneling technology.
https://tailscale.com/blog/how-tailscale-works/ ## 🔄 Updating Tailscale
## Links - New `.eap` files are auto-built and released **weekly** (if a new Tailscale version is available).
- To update, simply install the new `.eap` over the existing one.
https://tailscale.com/ ### Manual update (advanced)
https://github.com/tailscale/tailscale Replace the binaries in the `lib/` folder:
- `tailscale`
- `tailscaled`
https://www.wireguard.com/ Download the latest versions: [Tailscale static builds](https://pkgs.tailscale.com/stable/#static)
https://www.axis.com/ #### Build locally
## Compatibility From the main directory of the version you want (`arm` / `aarch64`):
The Tailscale ACAP is compatable with Axis cameras with arm and aarch64 based Soc's. ```bash
docker build --tag <package_name> .
``` docker cp $(docker create <package_name>):/opt/app ./build
curl --anyauth "*" -u <username>:<password> <device ip>/axis-cgi/basicdeviceinfo.cgi --data "{\"apiVersion\":\"1.0\",\"context\":\"Client defined request ID\",\"method\":\"getAllProperties\"}"
``` ```
where `<device ip>` is the IP address of the Axis device, `<username>` is the root username and `<password>` is the root password. Please ---
note that you need to enclose your password with quotes (`'`) if it contains special characters.
## Installing ## 🧪 Testers Needed
The recommended way to install this ACAP is to use the pre built eap file. A new **custom** version is available:
Go to "Apps" on the camera and click "Add app". - Allows setting a custom server and auth key (for [Headscale](https://headscale.net/)).
- Go to **Settings (⋮ → Settings)** to add your details.
Please give it a try and share your feedback!
## Using the Tailscale ACAP ---
The Tailscale ACAP will run a script on startup that sets the required permissions and starts the service and app. ## 🎉 Good News
Once started click "Open" to see the output of the logs for further instructions and obtain the authetication URL.
When uninstalling the ACAP, all changes and files are removed from the camera. Tailscale ACAP can now run **without root privileges**, making it compatible with **Axis OS 12+**.
You will need a tailscale.com account to use the ACAP - Runs in **user space networking mode**.
## Updating Tailscale version For **full networking features**, use the **ROOT** version on Axis OS < 12.
The eap files will be auto built and released every Monday if there is a new version and simply installing the new version over the old will update all files. ---
It's also possible to build and use a locally built image as all necesary files are provided. ## 🎯 Purpose
Replace binaries "tailscale" and "tailscaled" in lib folder with new versions. Adding a VPN client directly to the camera enables:
Make sure you use the files for the correct Soc. - Secure remote access without additional hardware or complex network configuration.
- Easy setup through Tailscale’s lightweight WireGuard-based tunnel.
Latest versions can be found at 🔗 Learn more: [How Tailscale Works](https://tailscale.com/blog/how-tailscale-works/)
https://pkgs.tailscale.com/stable/#static ---
## 🔗 Useful Links
To build, - [Tailscale](https://tailscale.com/)
From main directory of the version you want (arm/aarch64) - [Tailscale GitHub](https://github.com/tailscale/tailscale)
- [WireGuard](https://www.wireguard.com/)
- [Axis Communications](https://www.axis.com/)
``` ---
docker build --tag <package name> .
``` ## 🖥️ Compatibility
```
docker cp $(docker create <package name>):/opt/app ./build The Tailscale ACAP is compatible with Axis cameras with **ARM** and **AARCH64**-based SoCs.
You can verify your device details using the following command:
```bash
curl --anyauth "*" -u <username>:<password> <device_ip>/axis-cgi/basicdeviceinfo.cgi --data '{"apiVersion":"1.0","context":"Client defined request ID","method":"getAllProperties"}'
``` ```
> Replace `<device_ip>`, `<username>`, and `<password>` with your device credentials.
> Enclose your password in quotes `' '` if it contains special characters.
## Star History ---
## ⭐ Star History
[![Star History Chart](https://api.star-history.com/svg?repos=Mo3he/Axis_Cam_Tailscale&type=Date)](https://www.star-history.com/#Mo3he/Axis_Cam_Tailscale&Date) [![Star History Chart](https://api.star-history.com/svg?repos=Mo3he/Axis_Cam_Tailscale&type=Date)](https://www.star-history.com/#Mo3he/Axis_Cam_Tailscale&Date)
---
## 💖 Support
If you like this project and want to support future updates:
👉 [Sponsor Me](https://github.com/sponsors/Mo3he)
+1 -1
View File
@@ -3,7 +3,7 @@
echo "Starting Service" echo "Starting Service"
chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscale chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscale
chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscaled chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscaled
/usr/local/packages/Tailscale_VPN/lib/tailscaled --tun=userspace-networking --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock & /usr/local/packages/Tailscale_VPN/lib/tailscaled --socks5-server=localhost:1055 --tun=userspace-networking --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock &
echo "Service Started" echo "Service Started"
echo "Scroll to Bottom for link" echo "Scroll to Bottom for link"
/usr/local/packages/Tailscale_VPN/lib/tailscale --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock up /usr/local/packages/Tailscale_VPN/lib/tailscale --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock up
+1 -1
View File
@@ -8,7 +8,7 @@
"embeddedSdkVersion": "3.0", "embeddedSdkVersion": "3.0",
"vendorUrl": "https://www.tailscale.com", "vendorUrl": "https://www.tailscale.com",
"runMode": "once", "runMode": "once",
"version": "1.88.1", "version": "1.92.1",
"architecture": "aarch64" "architecture": "aarch64"
}, },
"configuration": { "configuration": {
+1 -1
View File
@@ -12,7 +12,7 @@
}, },
"vendorUrl": "https://www.tailscale.com", "vendorUrl": "https://www.tailscale.com",
"runMode": "once", "runMode": "once",
"version": "1.88.1", "version": "1.92.1",
"architecture": "aarch64" "architecture": "aarch64"
}, },
"configuration": { "configuration": {
+1 -1
View File
@@ -33,7 +33,7 @@ fi
# Start tailscaled # Start tailscaled
logger -t "tailscale_script" "Starting tailscaled daemon" logger -t "tailscale_script" "Starting tailscaled daemon"
$TAILSCALED_PATH --tun=userspace-networking --socket=$SOCKET_PATH & $TAILSCALED_PATH --socks5-server=localhost:1055 --tun=userspace-networking --socket=$SOCKET_PATH &
TAILSCALED_PID=$! TAILSCALED_PID=$!
# Wait for tailscaled to initialize # Wait for tailscaled to initialize
+1 -1
View File
@@ -8,7 +8,7 @@
"embeddedSdkVersion": "3.0", "embeddedSdkVersion": "3.0",
"vendorUrl": "https://www.tailscale.com", "vendorUrl": "https://www.tailscale.com",
"runMode": "respawn", "runMode": "respawn",
"version": "1.88.1" "version": "1.92.1"
}, },
"configuration": { "configuration": {
"settingPage": "index.html", "settingPage": "index.html",
+1 -1
View File
@@ -3,7 +3,7 @@
echo "Starting Service" echo "Starting Service"
chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscale chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscale
chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscaled chmod 777 /usr/local/packages/Tailscale_VPN/lib/tailscaled
/usr/local/packages/Tailscale_VPN/lib/tailscaled --tun=userspace-networking --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock & /usr/local/packages/Tailscale_VPN/lib/tailscaled --socks5-server=localhost:1055 --tun=userspace-networking --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock &
echo "Service Started" echo "Service Started"
echo "Scroll to Bottom for link" echo "Scroll to Bottom for link"
/usr/local/packages/Tailscale_VPN/lib/tailscale --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock up /usr/local/packages/Tailscale_VPN/lib/tailscale --socket=/usr/local/packages/Tailscale_VPN/tailscaled.sock up
+1 -1
View File
@@ -8,7 +8,7 @@
"embeddedSdkVersion": "3.0", "embeddedSdkVersion": "3.0",
"vendorUrl": "https://www.tailscale.com", "vendorUrl": "https://www.tailscale.com",
"runMode": "once", "runMode": "once",
"version": "1.88.1", "version": "1.92.1",
"architecture": "armv7hf" "architecture": "armv7hf"
}, },
"configuration": { "configuration": {
+1 -1
View File
@@ -12,7 +12,7 @@
}, },
"vendorUrl": "https://www.tailscale.com", "vendorUrl": "https://www.tailscale.com",
"runMode": "once", "runMode": "once",
"version": "1.88.1", "version": "1.92.1",
"architecture": "armv7hf" "architecture": "armv7hf"
}, },
"configuration": { "configuration": {