Behind the Winter Update was months of coordination, iteration, and cross-team execution.
This post is a shoutout to the folks who made the week possible. Read more on our blog.
Behind the Winter Update was months of coordination, iteration, and cross-team execution.
This post is a shoutout to the folks who made the week possible. Read more on our blog.
Join us later today on Discord, as Avery and Travis recap the week's announcements, including Aperture, CI/CD workload connectivity updates, PAM, and more, plus an open AMA.
Kicks off at 4pm ET/1pm PT today! See you there! https://discord.gg/tailscale?event=1471578245492113530
Identity-based access is only half the story. You also need clear, queryable records of what actually happened.
Tailscale now adds identity-linked auditability across K8s, traffic, and SSH, without heavyweight PAM infrastructure.
Workload identity federation is now GA in Tailscale.
CI, cloud, and Kubernetes workloads can authenticate using native OIDC identities instead of long-lived secrets, with API, Terraform, and tsnet support.
Tailscale Services is now generally available.
Publish internal resources as named, identity-aware services instead of wiring clients to machines or IPs. Now app-aware with tsnet, Kubernetes support, and better observability.
Log streaming now supports Google Cloud Storage (GCS).
Export audit/config logs and network flow logs (Enterprise) into your own GCS bucket for retention, investigation, and compliance, without breaking encryption.
Fleet device posture is now GA in Tailscale. π You can now use Fleet device state in Tailscale access policies, so enforcement says aligned as device state changes.π»
Device risk changes faster than access policies.
Weβve launched a new device posture integration with Huntress, now GAπ
Huntress endpoint security signals can now be used directly in Tailscale policies, so access updates automatically as device risk changes.
Direct paths arenβt always possible in locked-down networks.
Peer Relays lets you run high-throughput relays on your own nodes, with static endpoints for restricted cloud environments and built-in observability. Now in GA π
Winter Update Week is here βοΈ
New Tailscale podcast episode with Alex + Avery, Kabir, and Harry covering whatβs shipping this week and why it matters.
Watch βΆοΈ https://www.youtube.com/watch?v=jpFYggkU2C4