Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view

Large diffs are not rendered by default.

5 changes: 4 additions & 1 deletion docs-site/src/content/docs/fr/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ Une liaison entre machines connecte un ordinateur OpenCodex **Home** à un ordin
## Conditions requises

- Home peut se connecter à Child avec une clé OpenSSH.
- Pour une liaison initiée par Child, Child peut se connecter à Home avec une clé OpenSSH (la connexion par mot de passe n’est pas prise en charge).
- OpenCodex est installé sur Child.
- Les deux ordinateurs utilisent macOS ou Linux.
- Le tableau de bord Home dispose d’une session appairée complète.

SSH par mot de passe, Windows et la liaison initiée par Child ne font pas partie du flux actuel. Le flux initié par Child est **bientôt disponible**.
SSH par mot de passe et Windows restent hors du flux actuel. Pour démarrer une liaison depuis Child, ouvrez le tableau de bord du Child autonome, choisissez **Enfant** → **Trouver le Home**, sélectionnez l’hôte SSH de Home, vérifiez puis confirmez l’empreinte de la clé hôte, et choisissez **Connecter comme Enfant**. Child doit pouvoir se connecter à Home avec une clé SSH (les mots de passe ne sont pas pris en charge), et `ocx` doit être en cours d’exécution sur Home. Le port du tunnel client est `1024` ou supérieur. Après la jonction, Child redémarre et se connecte via Home. Cette option est disponible uniquement en mode autonome.

## Ajouter un Child depuis `#remote`

Expand Down Expand Up @@ -43,6 +44,8 @@ Si Home ne peut pas joindre Child pour exécuter la déconnexion, choisissez **R
ocx disconnect
```

Pour déconnecter une liaison initiée par Child, exécutez `ocx disconnect` sur Child. La commande déconnecte le tunnel client et révoque la liaison sur Home via SSH. Si cette révocation échoue, elle affiche : `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## Sécurité

Child utilise les fournisseurs et les identifiants de fournisseur de l’ordinateur Home via la liaison. Home crée une clé distincte pour chaque Child ; la suppression de la liaison révoque cette clé. Comparez l’empreinte de l’hôte avant de confirmer afin de ne pas accepter par erreur une mauvaise machine ou une clé modifiée. Les sessions du tableau de bord émises depuis une identité Tailscale ne peuvent pas gérer les liaisons.
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ A machine link connects an OpenCodex **Home** computer to a **Child** computer o
## Requirements

- The Home computer can log in to the Child with an OpenSSH key.
- For a Child-initiated link, the Child can log in to Home with an OpenSSH key (password login is not supported).
- OpenCodex is installed on the Child computer.
- Both computers run macOS or Linux.
- The Home dashboard has a full paired session.

Password SSH, Windows, and a Child-initiated link are outside the current flow. The Child-initiated flow is **coming soon**.
Password SSH and Windows are outside the current flow. For a Child-initiated link, open the standalone Child dashboard, choose **Child** → **Find Home**, select the SSH host for Home, check and confirm the host-key fingerprint, then choose **Connect as Child**. The Child must be able to log in to Home with an SSH key (password login is not supported), and `ocx` must be running on Home. The client tunnel port is `1024` or higher. After joining, the Child restarts and connects through Home. This option is available only on a standalone runtime.

## Add a Child from `#remote`

Expand Down Expand Up @@ -43,6 +44,8 @@ If the Home cannot reach the Child to run its disconnect command, choose **Remov
ocx disconnect
```

To disconnect a Child-initiated link, run `ocx disconnect` on the Child. It disconnects the client tunnel and revokes the link on Home over SSH. If Home revocation fails, it prints: `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## Security

The Child uses the Home computer's providers and provider credentials through the link. The Home creates a separate link key for each Child; removing the link revokes that key. Compare the host fingerprint before confirmation so a wrong machine or changed host key is not accepted by mistake. Dashboard sessions issued from a Tailscale identity cannot manage machine links.
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/ja/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ description: SSH で OpenCodex の Home コンピューターと Child コンピ
## 要件

- Home から Child に OpenSSH キーでログインできること。
- Child から開始するリンクでは、Child から Home に OpenSSH キーでログインできる必要があります(パスワードログインには対応していません)。
- Child に OpenCodex がインストールされていること。
- 両方のコンピューターが macOS または Linux であること。
- Home のダッシュボードに完全なペアリング済みセッションがあること。

パスワード SSH、Windows、Child から開始するリンクは現在のフローに含まれません。Child 開始フローは**近日対応予定**です。
パスワード SSH と Windows は現在のフローに含まれません。Child からリンクを開始するには、スタンドアロンの Child ダッシュボードで **子** → **Home を探す** を選び、Home の SSH ホストを選択し、ホストキーのフィンガープリントを確認してから **子として接続** を選びます。Child から Home へ SSH キーでログインできる必要があり(パスワードログインには対応していません)、Home では `ocx` が実行中である必要があります。クライアントトンネルのポートは `1024` 以上です。参加後、Child は再起動して Home に接続します。この項目はスタンドアロンランタイムでのみ使用できます。

## `#remote` から Child を追加する

Expand Down Expand Up @@ -43,6 +44,8 @@ Home から Child に接続解除コマンドを実行できない場合は **Re
ocx disconnect
```

Child から開始したリンクを切断するには、Child で `ocx disconnect` を実行します。このコマンドはクライアントトンネルを切断し、SSH 経由で Home のリンクを失効させます。Home での失効に失敗すると、次のメッセージが表示されます: `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## セキュリティ

Child はリンクを通じて Home コンピューターのプロバイダーとプロバイダー認証情報を使います。Home は Child ごとに別のリンクキーを作り、リンクを削除するとそのキーを失効させます。確認前にホストフィンガープリントを比較し、別のコンピューターや変更されたホストキーを誤って受け入れないようにしてください。Tailscale の ID から発行されたダッシュボードセッションはマシンリンクを管理できません。
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/ko/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ description: SSH로 OpenCodex Home 컴퓨터와 Child 컴퓨터를 연결합니
## 요구 사항

- Home 컴퓨터에서 OpenSSH 키 로그인으로 Child 컴퓨터에 접속할 수 있어야 합니다.
- 자식이 시작하는 링크에서는 자식에서 OpenSSH 키 로그인으로 홈에 접속할 수 있어야 합니다(비밀번호 로그인은 지원하지 않음).
- Child 컴퓨터에 OpenCodex가 설치되어 있어야 합니다.
- 두 컴퓨터 모두 macOS 또는 Linux여야 합니다.
- Home 대시보드에 완전한 페어링 세션이 있어야 합니다.

비밀번호 SSH, Windows, Child가 시작하는 링크 흐름은 현재 지원 범위가 아닙니다. Child가 시작하는 흐름은 **준비 중**입니다.
비밀번호 SSH와 Windows는 현재 흐름에서 지원하지 않습니다. 자식이 연결을 시작하려면 독립형 런타임으로 실행 중인 자식의 대시보드에서 **자식** → **홈 찾기**를 선택하고, 홈(Home)으로 사용할 SSH 호스트를 고른 다음 호스트 키 지문을 확인하고 **자식으로 연결**을 누릅니다. 자식에서 홈으로 SSH 키 로그인을 할 수 있어야 하며(비밀번호 로그인은 지원하지 않음), 홈에서 `ocx`가 실행 중이어야 합니다. 클라이언트 터널 포트는 `1024` 이상이어야 합니다. 연결이 완료되면 자식이 재시작되고 홈에 연결됩니다. 이 메뉴는 독립형 런타임에서만 사용할 수 있습니다.

## `#remote`에서 Child 추가하기

Expand Down Expand Up @@ -43,6 +44,8 @@ Home에서 Child의 연결 해제 명령을 실행할 수 없으면 **Remove her
ocx disconnect
```

자식 연결을 끊으려면 자식에서 `ocx disconnect`를 실행합니다. 이 명령은 클라이언트 터널을 끊고 SSH를 통해 홈에서 링크를 폐기합니다. 홈에서 폐기하지 못하면 다음 문구를 출력합니다: `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## 보안

Child는 링크를 통해 Home 컴퓨터의 프로바이더와 프로바이더 인증 정보를 사용합니다. Home은 Child마다 별도의 링크 키를 만들며, 링크를 제거하면 그 키를 폐기합니다. 확인 전에 호스트 지문을 비교하여 잘못된 컴퓨터나 변경된 호스트 키를 실수로 허용하지 않도록 하세요. Tailscale identity로 발급된 대시보드 세션은 머신 링크를 관리할 수 없습니다.
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/ru/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ description: Подключите компьютер OpenCodex Home к комп
## Требования

- Home может войти на Child по ключу OpenSSH.
- Для связи, инициированной со стороны Child, Child должен входить на Home по ключу OpenSSH (вход по паролю не поддерживается).
- На Child установлен OpenCodex.
- Оба компьютера работают под macOS или Linux.
- В панели Home есть полноценная сопряжённая сессия.

SSH с паролем, Windows и запуск связи со стороны Child сейчас не входят в поток. Поток, инициируемый Child, **появится позже**.
SSH с паролем и Windows сейчас не поддерживаются. Чтобы начать связь со стороны Child, откройте панель автономного Child, выберите **Дочерний** → **Найти Home**, укажите SSH-хост Home, проверьте и подтвердите отпечаток ключа хоста, затем выберите **Подключить как Child**. Child должен входить на Home по ключу SSH (вход по паролю не поддерживается), а на Home должен работать `ocx`. Порт клиентского туннеля должен быть `1024` или выше. После подключения Child перезапускается и подключается через Home. Этот пункт доступен только в автономном режиме.

## Добавление Child из `#remote`

Expand Down Expand Up @@ -43,6 +44,8 @@ SSH с паролем, Windows и запуск связи со стороны Ch
ocx disconnect
```

Чтобы отключить связь, инициированную со стороны Child, выполните `ocx disconnect` на Child. Команда отключает клиентский туннель и по SSH отзывает связь на Home. Если отзыв на Home не удался, команда выводит: `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## Безопасность

Child использует через связь провайдеров и учётные данные провайдеров компьютера Home. Home создаёт отдельный ключ связи для каждого Child; удаление связи отзывает этот ключ. Сравнивайте отпечаток хоста перед подтверждением, чтобы случайно не принять другой компьютер или изменённый ключ. Сессии панели, выданные удостоверением Tailscale, не могут управлять связями машин.
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/tr/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ Makine bağlantısı, bir OpenCodex **Home** bilgisayarını bir **Child** bilgi
## Gereksinimler

- Home bilgisayarı, Child bilgisayarına OpenSSH anahtarıyla giriş yapabilir.
- Child tarafından başlatılan bağlantı için Child, Home bilgisayarına OpenSSH anahtarıyla giriş yapabilmelidir (parola girişi desteklenmez).
- Child bilgisayarında OpenCodex kuruludur.
- Her iki bilgisayar da macOS veya Linux çalıştırır.
- Home kontrol panelinde tam bir eşleştirilmiş oturum vardır.

Parola SSH, Windows ve Child tarafından başlatılan bağlantı mevcut akışın dışındadır. Child tarafından başlatılan akış **yakında geliyor**.
Parolalı SSH ve Windows mevcut akışın dışındadır. Child üzerinden bağlantı başlatmak için bağımsız çalışan Child kontrol panelinde **Çocuk** → **Home'u bul** seçeneklerini izleyin, Home için SSH ana bilgisayarını seçin, ana bilgisayar anahtarı parmak izini kontrol edip onaylayın ve ardından **Çocuk olarak bağlan** seçeneğini seçin. Child, Home bilgisayarına SSH anahtarıyla giriş yapabilmelidir (parola girişi desteklenmez) ve Home üzerinde `ocx` çalışıyor olmalıdır. İstemci tüneli portu `1024` veya daha yüksek olmalıdır. Katılma işleminden sonra Child yeniden başlar ve Home bilgisayarına bağlanır. Bu seçenek yalnızca standalone çalışma zamanında kullanılabilir.

## `#remote` üzerinden Child ekleme

Expand Down Expand Up @@ -43,6 +44,8 @@ Home, bağlantıyı kesme komutunu çalıştırmak için Child'a ulaşamıyorsa
ocx disconnect
```

Child tarafından başlatılan bağlantıyı kesmek için Child üzerinde `ocx disconnect` komutunu çalıştırın. Komut istemci tünelinin bağlantısını keser ve SSH üzerinden Home üzerindeki bağlantıyı iptal eder. Home üzerindeki iptal başarısız olursa şu mesajı yazdırır: `Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## Güvenlik

Child, bağlantı üzerinden Home bilgisayarının sağlayıcılarını ve sağlayıcı kimlik bilgilerini kullanır. Home her Child için ayrı bir bağlantı anahtarı oluşturur; bağlantıyı kaldırmak bu anahtarı iptal eder. Onaylamadan önce ana bilgisayar parmak izini karşılaştırarak yanlış bilgisayarı veya değiştirilmiş anahtarı kabul etmediğinizden emin olun. Tailscale kimliğiyle verilen kontrol paneli oturumları makine bağlantılarını yönetemez.
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/zh-cn/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ description: 通过 SSH 将 OpenCodex 主机与子机连接起来。
## 要求

- 主机可以使用 OpenSSH 密钥登录子机。
- 对于由子机发起的链接,子机必须能使用 OpenSSH 密钥登录主机(不支持密码登录)。
- 子机已安装 OpenCodex。
- 两台电脑运行 macOS 或 Linux。
- 主机控制台拥有完整的已配对会话。

密码 SSH、Windows 以及由子机发起的链接不在当前流程中。子机发起的流程**即将推出**。
密码 SSH 和 Windows 不在当前流程中。要从子机发起连接,请在独立运行的子机控制台中选择 **子设备** → **查找 Home**,选择 Home 的 SSH 主机,检查并确认主机密钥指纹,然后选择 **以子设备身份连接**。子机必须能使用 SSH 密钥登录 Home(不支持密码登录),并且 Home 上正在运行 `ocx`。客户端隧道端口必须为 `1024` 或更高。加入后,子机会重启并连接到 Home。此入口仅在 standalone 运行时提供。

## 从 `#remote` 添加子机

Expand Down Expand Up @@ -43,6 +44,8 @@ description: 通过 SSH 将 OpenCodex 主机与子机连接起来。
ocx disconnect
```

要断开由子机发起的链接,请在子机上运行 `ocx disconnect`。该命令会断开客户端隧道,并通过 SSH 在 Home 上撤销链接。如果 Home 撤销失败,命令会输出:`Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## 安全

子机会通过链接使用主机电脑上的提供商和提供商凭据。主机会为每台子机创建单独的链接密钥;移除链接会吊销该密钥。确认前比较主机指纹,避免误接受错误电脑或已更换的主机密钥。由 Tailscale 身份签发的控制台会话不能管理机器链接。
Expand Down
5 changes: 4 additions & 1 deletion docs-site/src/content/docs/zh-tw/guides/remote-link.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,12 @@ description: 透過 SSH 連接 OpenCodex Home 電腦與 Child 電腦。
## 需求

- Home 可以使用 OpenSSH 金鑰登入 Child。
- 對於由 Child 發起的連結,Child 必須能使用 OpenSSH 金鑰登入 Home(不支援密碼登入)。
- Child 已安裝 OpenCodex。
- 兩台電腦執行 macOS 或 Linux。
- Home 儀表板擁有完整的已配對工作階段。

密碼 SSH、Windows,以及由 Child 發起的連結不在目前流程中。Child 發起的流程**即將推出**。
密碼 SSH 和 Windows 不在目前流程中。若要從 Child 發起連線,請在獨立執行的 Child 儀表板中選擇 **子裝置** → **尋找 Home**,選取 Home 的 SSH 主機,檢查並確認主機金鑰指紋,然後選擇 **以子裝置身分連線**。Child 必須能使用 SSH 金鑰登入 Home(不支援密碼登入),而且 Home 上正在執行 `ocx`。用戶端通道連接埠必須是 `1024` 或更高。加入後,Child 會重新啟動並連線到 Home。這個入口只在 standalone 執行個體中提供。

## 從 `#remote` 新增 Child

Expand Down Expand Up @@ -43,6 +44,8 @@ description: 透過 SSH 連接 OpenCodex Home 電腦與 Child 電腦。
ocx disconnect
```

若要中斷由 Child 發起的連結,請在 Child 上執行 `ocx disconnect`。這個命令會中斷用戶端通道,並透過 SSH 在 Home 上撤銷連結。如果 Home 撤銷失敗,命令會輸出:`Home revoke failed; run ocx link revoke --link-id <linkId> on the home.`

## 安全性

Child 會透過連結使用 Home 電腦上的供應商與供應商憑證。Home 會為每個 Child 建立獨立的連結金鑰;移除連結會撤銷該金鑰。確認前請比較主機指紋,避免誤接受錯誤電腦或已變更的主機金鑰。由 Tailscale 身分簽發的儀表板工作階段無法管理機器連結。
Expand Down
Loading
Loading