Trying to find a way to connect to my home server as well as my VPN at the same time. Doesn’t seem like tailscale can. I’ve started looking at pangolin, has anyone had any luck with this issue?
Thank you
I was reading this yesterday
https://tailscale.com/docs/reference/faq/other-vpns
I probably won’t do it myself, but maybe it works for you
VPN to home, then route outbound traffic over the other VPN.
Maybe run the public VPN at home with NAT enabled, and use it as the default gateway in the private VPN. Never done it but I think I’ve seen some guides on that concept.
idk how it works on grapheneos. but on normal android i could use work profile for this. and singbox inside the work profile to open a local socks5 proxy, then connecting to it from outside the work profile.
I use my own “solution” to host a WireGuard node inside a tailnet: https://github.com/stratself/tswg
You can also try https://github.com/juhovh/tailguard
Gluetun + Tailscale also kind of worked, but quite slow
Depends on what threat you’re protecting against IMHO.
If you’re trying to be anonymous, connecting to your home IP first is a dead giveaway to who you are. Both your home ISP and whichever ISP you’re connnected to will know.
Only easy way to maintain some anonymity right now would be to use Tailscale’s Mullvad integration……Tailscale to connect your servers, Mullvad for anonymize/country changing.
Other way might be to ONLY use Tailscale/Mullvad, and set up an alternative auth front door to your own network. Complicated and doesn’t work as nicely tho.
This.
And graphene actually makes things very easy for you: every profile can have regular and private version of any given app.
The private side is essentially a different user with its own set of vpn options but you can easily navigate in between provate and normal apps.
Im using the regular profile for staying connected to home. All traffic is routed to home and then to proton.
Everything in the private section goes through regular proton vpn(the app on the phone) so any traffic to the web also has a different exit node to my “home” traffic (albeit a proton one).
I then have a separate profile called incognito with only proton pass, vpn and onion browser on it.
Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I’ve seen in this thread:
Fewer Letters More Letters ISP Internet Service Provider NAT Network Address Translation VPN Virtual Private Network VPS Virtual Private Server (opposed to shared hosting)
[Thread #33 for this comm, first seen 29th Jun 2026, 14:50] [FAQ] [Full list] [Contact] [Source code]
You can use tailscale + gluetun docker containers to use your favorite commercial vpn as an exit node on the same machine. https://github.com/alexmaisa/tailscale-vpn-exitnode
Or you need to update iptables of you don’t use docker and have e. g. wireguard out as an exit node. Or if you have vpn out on your router, and tailscale on the home network, you just use it as exit node.
What issue are you having?
I use tailscale just fine on my gos.
E: sorry I kinda misread here
I’ve got pangolin running on a VPS. It was dead simple.
If only pangolin supported 0.0.0.0 routing. It’s been requested for months but instead of doing that… They’ve been courting paid enterprise usage.
What are you trying to accomplish with that?
Might sound like a dumb question, but have you opened the port on your router?
My ASUS router handles my WireGuard setup, I can forward my home VPN server through one of Protons VPN servers essentially creating a multi-hop setup.








