Sponsor of the Day:
Jerkmate
https://tailscale.com/docs/concepts/tailnet
What is a tailnet? · Tailscale Docs
Understand what the term tailnet means.
tailscale docstailnet
https://tailscale.com/docs/features/tags
Group devices with tags · Tailscale Docs
Use Tailscale tags to authenticate and identify non-user devices, such as a server.
tailscale docsgroupdevicestags
https://tailscale.com/docs/database
Connect to a database · Tailscale Docs
Connect to databases over Tailscale.
tailscale docsconnectdatabase
https://tailscale.com/docs/solutions/protect-postgresql-unencrypted-macbooks
Protect production PostgreSQL databases from unencrypted MacBooks · Tailscale Docs
Use grants to automatically route PostgreSQL traffic based on MacBook encryption status, providing direct access for encrypted devices while monitoring...
postgresql databasestailscale docsprotectproductionunencrypted
https://tailscale.com/docs/account/billing
Manage billing · Tailscale Docs
Change billing information related to your Tailscale account.
manage billingtailscale docs
https://tailscale.com/docs/features/access-control/device-management/how-to/set-up-qr-code
Add a device using a QR code · Tailscale Docs
Add new devices to your Tailscale network using QR code scanning.
device usingqr codetailscale docsadd
https://tailscale.com/docs/features/subnet-routers
Subnet routers · Tailscale Docs
Use subnet routers to give devices outside your local network access to services within specific subnets. Extend your private network with Tailscale.
tailscale docssubnetrouters
https://tailscale.com/docs/use-cases
Use cases · Tailscale Docs
Explore ways people use Tailscale at home and at work.
use casestailscale docs
https://tailscale.com/docs/features/tsnet
tsnet · Tailscale Docs
Use the tsnet package to embed Tailscale inside a Go program.
tailscale docs
https://tailscale.com/docs/integrations/pikvm
Access PiKVM from anywhere · Tailscale Docs
Set up Tailscale on PiKVM.
tailscale docsaccessanywhere
https://tailscale.com/docs/features/access-control/device-management/how-to/filter
Filter devices in the admin console · Tailscale Docs
Find devices meeting certain criteria in the machines page of the admin console.
admin consoletailscale docsfilterdevices
https://tailscale.com/docs/features/tailscale-accessbot-jit
Use device posture for just-in-time access · Tailscale Docs
Use device posture for just-in-time access to resources in your tailnet.
use devicetime accesstailscale docsposture
https://tailscale.com/docs/reference/messages/client/tls-connection-failed
Encrypted connection failed · Tailscale Docs
The Tailscale client could not establish a secure, encrypted connection with a peer or control plane because the required cryptographic handshake failed.
connection failedtailscale docsencrypted
https://tailscale.com/docs/reference/quad100
What is 100.100.100.100? · Tailscale Docs
Find out what 100.100.100.100 (also known as Quad100) is.
tailscale docs100
https://tailscale.com/docs/features/logging
Logging overview · Tailscale Docs
Understand Tailscale's logging infrastructure.
tailscale docsloggingoverview
https://tailscale.com/docs/features/mac-ios-shortcuts
macOS and iOS shortcuts · Tailscale Docs
Understand how Tailscale works with the Shortcuts app, allowing you to automate tasks.
tailscale docsmacosiosshortcuts
https://tailscale.com/docs/reference/troubleshooting/connectivity/connect-internet-failure
Can't connect to internet · Tailscale Docs
Troubleshoot internet connectivity issues.
tailscale docsconnectinternet
https://tailscale.com/docs/features/client/android-app-split-tunneling
Using app-based split tunneling on Android · Tailscale Docs
Configure specific apps to use or be excluded from Tailscale tunneling on Android devices.
using appsplit tunnelingtailscale docsbasedandroid
https://tailscale.com/docs/integrations/qnap
Access QNAP NAS from anywhere · Tailscale Docs
Configure the Tailscale client on a QNAP NAS device.
qnap nastailscale docsaccessanywhere
https://tailscale.com/docs/features/access-control/grants/grants-via
Route filtering with Via · Tailscale Docs
Control how traffic routes from a source to a destination, such as through specific exit nodes, subnet routers, or app connectors.
tailscale docsroutefilteringvia
https://tailscale.com/docs/reference/derp-servers/custom-derp-servers
Custom DERP servers · Tailscale Docs
About custom DERP servers, their limitations, and how to set them up.
tailscale docscustomderpservers
https://tailscale.com/docs/concepts
Technical overviews · Tailscale Docs
Get in-depth technical details about Tailscale.
tailscale docstechnicaloverviews
https://tailscale.com/docs/aperture/observe-and-export
Observe and export AI usage · Tailscale Docs
Access dashboards, review session logs, and export usage data from Aperture.
ai usagetailscale docsobserveexport
https://tailscale.com/docs/concepts/control-data-planes
Control and data planes · Tailscale Docs
Understand the control plane and data planes in Tailscale.
tailscale docscontroldataplanes
https://tailscale.com/docs/aperture/connect-outside-tailnet
Connect devices outside your tailnet · Tailscale Docs
Use ts-unplug to connect devices that are not in your tailnet to your Aperture instance.
connect devicestailscale docsoutsidetailnet
https://tailscale.com/docs/reference/best-practices/performance
Performance best practices · Tailscale Docs
Get the most performance out of your Tailscale deployment.
performance best practicestailscale docs
https://tailscale.com/docs/containers-and-virtualization
Containers and virtualization · Tailscale Docs
Integrate Tailscale with container and virtualization technologies.
tailscale docscontainersvirtualization
https://tailscale.com/docs/features/exit-nodes/auto-exit-nodes
Recommended exit nodes · Tailscale Docs
Understand how Tailscale can recommended exit nodes based on location and latency.
exit nodestailscale docsrecommended
https://tailscale.com/docs/features/access-control/auth-keys
Auth keys · Tailscale Docs
Use Tailscale auth keys to authenticate devices, automate device provisioning, and enhance security. Create and manage auth keys for streamlined network access...
tailscale docsauthkeys
https://tailscale.com/docs/integrations/huntress
Restrict device access with Huntress · Tailscale Docs
Use signals reported by Huntress as device posture attributes for use in access rules.
restrict device accesstailscale docshuntress
https://tailscale.com/docs/aperture/reference/dashboard
Aperture dashboard reference · Tailscale Docs
Reference for each page in the Aperture dashboard, including usage metrics, session logs, tool use patterns, and adoption data.
tailscale docsaperturedashboardreference
https://tailscale.com/docs/solutions/create-a-secure-connection-to-mongodb-atlas
Create a secure connection to MongoDB Atlas · Tailscale Docs
Securely connect to a MongoDB Atlas database and permit access only to your Tailscale network.
secure connectionmongodb atlastailscale docscreate
https://tailscale.com/docs/features/exit-nodes/how-to/setup
Use exit nodes · Tailscale Docs
Route traffic through a specific device in your tailnet, and configure devices to use an exit node.
exit nodestailscale docsuse
https://tailscale.com/docs/integrations/jamf-pro
Restrict device access with Jamf Pro · Tailscale Docs
Use signals reported by Jamf Pro as device posture attributes for use in access rules.
restrict device accessjamf protailscale docs
https://tailscale.com/docs/aperture/how-to/integrate-cribl
Integrate Cribl with Aperture · Tailscale Docs
Route AI usage data from Aperture to Cribl for processing and forwarding to your observability destinations.
tailscale docsintegratecriblaperture
https://tailscale.com/docs/reference/faq/dns-resolv-conf
Why is resolv.conf being overwritten? · Tailscale Docs
Understand why tailscaled overwrites /etc/resolv.conf
resolv conftailscale docsoverwritten
https://tailscale.com/docs/reference/examples/grants
Grant examples · Tailscale Docs
Explore example grant rules for common scenarios.
tailscale docsgrantexamples
https://tailscale.com/docs/integrations/jit-conductorone
JIT access with ConductorOne · Tailscale Docs
Use Tailscale and ConductorOne for on-demand access to your Tailscale network.
jit accesstailscale docs
https://tailscale.com/docs/features/access-control/acls
Manage permissions using ACLs · Tailscale Docs
Configure access control lists (ACLs) in Tailscale to manage device permissions and secure your network.
manage permissionstailscale docsusingacls
https://tailscale.com/docs/integrations/jit-access
Third-party integrations for JIT access · Tailscale Docs
Use third-party integrations for just-in-time access, also known as on-demand access, to your Tailscale network.
third party integrationsjit accesstailscale docs
https://tailscale.com/docs/features/kubernetes-operator/how-to/api-server-proxy
Access the Kubernetes control plane using an API server proxy · Tailscale Docs
Access the Kubernetes control plane using an API server proxy with the Kubernetes operator
control planeapi servertailscale docsaccesskubernetes
https://tailscale.com/docs/aperture/what-is-aperture
What is Aperture? · Tailscale Docs
Aperture by Tailscale is an AI gateway that secures, monitors, and routes LLM requests across your organization.
tailscale docsaperture
https://tailscale.com/docs/integrations/google-sync
User & group provisioning for Google Workspace · Tailscale Docs
Sync users and groups from Google Workspace to use in Tailscale access controls.
user group provisioninggoogle workspacetailscale docs
https://tailscale.com/docs/integrations/crowdstrike-zta
Restrict device access with CrowdStrike ZTA scores · Tailscale Docs
Use Zero Trust Assessment (ZTA) scores reported by CrowdStrike Falcon as a device posture attribute for use in access rules.
restrict device accesstailscale docscrowdstrikeztascores
https://tailscale.com/docs/features/subnet-routers/how-to/setup
Configure a subnet router · Tailscale Docs
Configure a subnet router to relay access in your network, including resources where Tailscale cannot be installed.
tailscale docsconfiguresubnetrouter
https://tailscale.com/docs/features/kubernetes-operator/how-to/multi-tailnet
Use multiple tailnets for devices running on Kubernetes · Tailscale Docs
Deploy devices across multiple tailnets using the Kubernetes Operator.
use multipledevices runningtailscale docstailnetskubernetes
https://tailscale.com/docs/reference/interoperability
Interoperability with other software · Tailscale Docs
Get information about Tailscale interoperability with other software.
tailscale docsinteroperabilitysoftware
https://tailscale.com/docs/concepts/node-keys
Node keys · Tailscale Docs
How Tailscale uses node keys as the mechanism for which machines can join a tailnet.
tailscale docsnodekeys
https://tailscale.com/docs/features/tailnet-lock
Tailnet Lock · Tailscale Docs
Ensure that no node joins your tailnet unless trusted nodes in your tailnet sign the new node.
tailnet locktailscale docs
https://tailscale.com/docs/account/manage-plans/upgrade-plan
Upgrade your plan · Tailscale Docs
Upgrade your Tailscale plan, whether you are moving from the Personal plan to a paid plan or switching between paid plans.
tailscale docsupgradeplan
https://tailscale.com/docs/features/access-control/device-management/device-approval
Device approval · Tailscale Docs
Review and approve new devices before they can join your Tailscale network.
tailscale docsdeviceapproval
https://tailscale.com/docs/reference/key-secret-management
Key and secret management · Tailscale Docs
Manage the various types of keys and secrets for your tailnet.
secret managementtailscale docskey
https://tailscale.com/docs/account
Manage your organization · Tailscale Docs
Manage your contact information, your account, the plans we offer, and how to manage your tailnet DNS name and domain.
tailscale docsmanageorganization
https://tailscale.com/docs/integrations/nextdns
Use NextDNS · Tailscale Docs
Use NextDNS with devices in your tailnet.
tailscale docsusenextdns
https://tailscale.com/docs/reference/tailscale-release-stages
Release stages · Tailscale Docs
Understand the Tailscale release stages.
tailscale docsreleasestages
https://tailscale.com/docs/firewall
Integrate with a firewall · Tailscale Docs
Integrate Tailscale with popular firewall products.
tailscale docsintegratefirewall
https://tailscale.com/docs/features/access-control/device-management/how-to/manage-identity
Use Device Identity Collection · Tailscale Docs
Enable Device Identity Collection to collect serial numbers from devices on your Tailscale network.
use deviceidentity collectiontailscale docs
https://tailscale.com/docs/features/tailnet-policy-file/manage-tailnet-policies
Edit access control policies in your tailnet policy file · Tailscale Docs
Create and edit access control policies in your tailnet policy file.
edit accesscontrol policiespolicy filetailscale docstailnet
https://tailscale.com/docs/automations
Automations · Tailscale Docs
Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.
tailscale docsautomations
https://tailscale.com/docs/features/ephemeral-nodes
Ephemeral nodes · Tailscale Docs
Use ephemeral nodes in Tailscale for managing short-lived devices like containers and CI/CD systems.
tailscale docsephemeralnodes
https://tailscale.com/docs/features/logging/audit-logging
Configuration audit logging · Tailscale Docs
Identify who did what, and when, to your tailnet configuration.
configuration audittailscale docslogging
https://tailscale.com/docs/reference/reauth-under-tailnet-lock
Re-authenticating under Tailnet Lock · Tailscale Docs
How to safely re-authenticate a node under Tailnet Lock.
tailnet locktailscale docsauthenticating
https://tailscale.com/docs/features/tailnet-policy-file/ip-sets
IP sets · Tailscale Docs
Review how to use IP sets.
tailscale docsipsets
https://tailscale.com/docs/features/site-to-site
Site-to-site networking · Tailscale Docs
Connect two subnets in your tailnet with each other.
tailscale docssitenetworking
https://tailscale.com/docs/integrations/iru
Restrict device access with Iru · Tailscale Docs
Use signals reported by Iru (formerly Kandji) as device posture attributes for use in access rules.
restrict device accesstailscale docsiru
https://tailscale.com/docs/integrations
Integrations · Tailscale Docs
How to use Tailscale to various kinds of servers, services, or devices.
tailscale docsintegrations
https://tailscale.com/docs/features/workload-identity-federation
Workload identity federation · Tailscale Docs
Use federated OIDC workload identities from third-party providers to authenticate requests to the Tailscale API.
workload identity federationtailscale docs
https://tailscale.com/docs/solutions/access-remote-desktops-using-windows-rdp
Access remote desktops using Windows RDP · Tailscale Docs
Access a Windows PC securely from anywhere using Remote Desktop and Tailscale. Connect devices on your private tailnet without port forwarding or public IPs.
access remoteusing windowstailscale docsdesktopsrdp
https://tailscale.com/docs/concepts/ip-blocklist-relays
Connect to external services with IP block lists · Tailscale Docs
Control access to SaaS applications hosted on servers that aren't running Tailscale.
external servicesip blocktailscale docsconnectlists
https://tailscale.com/docs/features/kubernetes-operator/how-to/cluster-egress
Expose a tailnet service to your Kubernetes cluster (cluster egress) · Tailscale Docs
Expose a tailnet service to your Kubernetes cluster (cluster egress) with the Kubernetes Operator
kubernetes clustertailscale docsexposetailnetservice
https://tailscale.com/docs/features/access-control/user-approval
User approval · Tailscale Docs
Review and approve new users before they can join your Tailscale network.
tailscale docsuserapproval
https://tailscale.com/docs/features/client/ios-vpn-on-demand
Using VPN On Demand for iOS and macOS · Tailscale Docs
Automatically connect and disconnect Tailscale on your iOS and macOS devices.
using vpntailscale docsdemandiosmacos
https://tailscale.com/docs/reference/examples/acls
ACL policy examples · Tailscale Docs
View example ACL policies for common scenarios.
policy examplestailscale docsacl
https://tailscale.com/docs/concepts/domain-ownership
Domain ownership · Tailscale Docs
Explore how your tailnet is tied to your domain.
domain ownershiptailscale docs
https://tailscale.com/docs/aperture/how-to/build-custom-webhook
Build a custom webhook · Tailscale Docs
Create a custom webhook integration to send Aperture event data to your own services.
tailscale docsbuildcustomwebhook
https://tailscale.com/docs/features/containers/docker
Docker · Tailscale Docs
Explore how to use Tailscale inside Docker containers.
tailscale docsdocker
https://tailscale.com/docs/aperture/set-up-providers
Set up LLM providers · Tailscale Docs
Configure upstream LLM providers so Aperture can route requests and inject authentication on behalf of your users.
llm providerstailscale docsset
https://tailscale.com/docs/reference/support-options
Support options · Tailscale Docs
Understand Tailscale's support options.
support optionstailscale docs
https://tailscale.com/docs/features/taildrive
Taildrive · Tailscale Docs
Share folders securely between devices on your Tailscale network.
tailscale docs
https://tailscale.com/docs/integrations/sentinelone
Restrict device access with SentinelOne · Tailscale Docs
Use signals reported by SentinelOne agents as device posture attributes for use in access rules.
restrict device accesstailscale docssentinelone
https://tailscale.com/docs/features/tailnet-policy-file
Tailnet policy file · Tailscale Docs
Understand the tailnet policy file.
policy filetailscale docstailnet
https://tailscale.com/docs/features/user-group-provisioning
User & group provisioning · Tailscale Docs
Learn about the System for Cross-domain Identity Management (SCIM) identity providers that Tailscale supports.
user group provisioningtailscale docs
https://tailscale.com/docs/reference/debug-menu
Debug menu and options · Tailscale Docs
Enable debug mode of the Tailscale client menu to help troubleshoot issues.
tailscale docsdebugmenuoptions
https://tailscale.com/docs/integrations/identity/custom-oidc
Custom OIDC providers · Tailscale Docs
Configure your OpenID Connect (OIDC) identity provider to integrate with Tailscale.
tailscale docscustomoidcproviders
https://tailscale.com/docs/integrations/identity/entra/entra-id-scim
User & group provisioning for Microsoft Entra ID · Tailscale Docs
See how to sync users and groups from Microsoft Entra ID to use in Tailscale access controls.
user group provisioningmicrosoft entra idtailscale docs
https://tailscale.com/docs/cloud-server
Connect to a cloud server · Tailscale Docs
Connect your cloud server to Tailscale.
cloud servertailscale docsconnect
https://tailscale.com/docs/reference/wireguard-dynamic-ip
WireGuard VPN with a dynamic IP address · Tailscale Docs
How WireGuard VPN works with dynamic IP addresses.
wireguard vpndynamic iptailscale docsaddress
https://tailscale.com/docs/reference/user-roles
User roles · Tailscale Docs
Use roles for restricting access to the admin console.
user rolestailscale docs
https://tailscale.com/docs/features/client/ios-vpn-on-demand?tab=macos
Using VPN On Demand for iOS and macOS · Tailscale Docs
Automatically connect and disconnect Tailscale on your iOS and macOS devices.
using vpntailscale docsdemandiosmacos
https://tailscale.com/docs/solutions/access-remote-desktops-with-rustdesk
Access remote desktops using RustDesk · Tailscale Docs
Set up secure remote desktop access using RustDesk and Tailscale for connecting devices directly over your private tailnet, no servers needed.
access remotetailscale docsdesktopsusingrustdesk
https://tailscale.com/docs/how-to/secure-ubuntu-server-with-ufw
Use ufw to lock down an Ubuntu server · Tailscale Docs
Accept connections from Tailscale and ignore internet traffic to a server.
ubuntu servertailscale docsuseufwlock
https://tailscale.com/docs/features/kubernetes-operator/how-to/session-recording
Kubernetes 'kubectl' session and API request recording · Tailscale Docs
Record kubectl exec, attach, and debug sessions, and all Kubernetes API requests when using the Kubernetes API server proxy.
kubernetes kubectlapi requesttailscale docssessionrecording
https://tailscale.com/docs/features/access-control/key-expiry
Key expiry · Tailscale Docs
Prevent unnecessary re-authentication when you disable key expiry. Avoid disruptions in network connectivity and still keep your Tailscale network secure.
tailscale docskeyexpiry
https://tailscale.com/docs/aperture/manage-spending
Manage AI spending · Tailscale Docs
Set budgets, control per-user spending limits, and monitor quota balances in Aperture.
manage aitailscale docsspending
https://tailscale.com/docs/reference/multifactor-auth
Add multifactor authentication to any legacy service · Tailscale Docs
Explore how Tailscale integrates with SSO providers for authentication, including for 2FA/MFA.
multifactor authenticationtailscale docsaddlegacyservice
https://tailscale.com/docs/integrations/fleet
Restrict device access with Fleet · Tailscale Docs
Use signals reported by Fleet as a device posture attribute for use in access rules.
restrict device accesstailscale docsfleet
https://tailscale.com/docs/reference/faq
FAQ · Tailscale Docs
Answers to common questions.
tailscale docsfaq
https://tailscale.com/docs/reference/syntax/grants
Grants syntax · Tailscale Docs
Complete reference documentation for Tailscale's grants system.
tailscale docsgrantssyntax
https://tailscale.com/docs/features/multiple-tailnets
Manage multiple tailnets · Tailscale Docs
Manage multiple tailnets under a single organization.
manage multipletailscale docstailnets
https://tailscale.com/docs/reference/reserved-ip-addresses
Reserved IP addresses · Tailscale Docs
Review the reserved IP addresses and ranges that Tailscale uses for device addressing and internal services.
ip addressestailscale docsreserved