Zum Inhalt springen

Tailscale Release Notes

25 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Declarative node sharing: Ressourcen per Policy zwischen Tailnets teilen (Alpha)

Mit Declarative node sharing können Tailnet-Admins per Policy Ressourcen sicher zwischen vertrauenswürdigen Tailnets teilen (Alpha).

  • New: Declarative node sharing lets tailnet admins use policy to securely share resources between trusted tailnets (alpha).

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.102.5: tailscaled verbindet sich unter Linux neu

Unter Linux beendet der Client in Version 1.102.5 tailscaled nicht mehr, wenn er bei Statusupdates zurückfällt und die Verbindung geschlossen wird, sondern verbindet sich neu und beendet sich nur, wenn dies innerhalb einer Minute nicht gelingt.

Linux
  • Fixed: The client no longer stops tailscaled when it falls behind on status updates and the connection is closed, which was common on large tailnets. It reconnects instead, and exits only if it cannot reconnect within one minute.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale PAM: Ein Browser-Gerät für alle Tabs

Der PAM-Webclient unter my.tailscale.com läuft als einzelnes browserbasiertes Tailscale-Gerät für alle Tabs, sodass nach einmaliger Authentifizierung keine erneute Anmeldung für weitere Verbindungen in neuen Tabs nötig ist.

  • Changed: The PAM web client at my.tailscale.com runs as a single browser-based Tailscale device that is shared across all of your browser tabs. After authenticating once, connecting to a service in a new tab no longer requires you to reauthenticate for every subsequent connection. This eliminates repeated sign-in prompts, so you can move between services quickly without the friction of authenticating over and over.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Container Image v1.102.5: tailscaled verbindet sich neu

Das Tailscale Container Image v1.102.5 beendet tailscaled nicht mehr, wenn es bei Statusupdates zurückfällt und die Verbindung geschlossen wird, sondern verbindet sich neu und beendet sich nur, wenn dies innerhalb einer Minute nicht gelingt.

A new release of the Tailscale container image is available. You can download it from Docker Hub or from our GitHub packages repository.

  • Fixed: The container no longer stops tailscaled when it falls behind on status updates and the connection is closed, which was common on large tailnets. It reconnects instead, and exits only if it cannot reconnect within one minute.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Device-Posture-Status in der Admin-Konsole mit mehr Details

Auf der Seite Machines der Admin-Konsole zeigt der Device-Posture-Status nun die geforderten Assertions, den Wert jeder Maschine, ob sie bestanden wird, sowie die Anzahl der betroffenen Policy-Datei-Regeln.

  • When checking the device posture status of a machine on the Machines page of the admin console, you can see the assertions the posture requires, each machine's value, and whether it's passing. For each posture, you can also see a count of policy file rules that affect a machine and require this posture.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale GitHub Action v4.2.0: Weniger Downloads, gruppierte Logs

Die Tailscale GitHub Action v4.2.0 überspringt unter Linux das erneute Herunterladen von Binaries bei vorhandener Datei mit passendem SHA und gruppiert Logausgaben standardmäßig, steuerbar über den Parameter log-mode.

  • Fixed: The Tailscale GitHub Action properly skips re-downloading binaries on linux if a file with a matching SHA already exists.
  • New: The Tailscale GitHub Action groups log output by default. Use the log-mode parameter to control whether the logging output is grouped, ungrouped, or run in "quiet" mode.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Kubernetes Operator v1.102.4: ProxyGroup-Reconciler-Fehler behoben

Der Tailscale Kubernetes Operator v1.102.4 behebt einen Fehler, bei dem der ProxyGroup-Reconciler auf falsche Ereignisse reagierte.

A new release of the Tailscale Kubernetes Operator is available. For guidance on installing and updating, refer to our installation instructions.

  • Fixed: ProxyGroup reconciler no longer triggers on incorrect events.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.102.4: Verbindungsverlust, Exit Nodes und tvOS-Start behoben

Tailscale v1.102.4 behebt einen möglichen Verbindungsverlust bei einem Netmap-Update kurz vor der Reauthentifizierung, fehlende Exit Nodes bei eigenem Coordination Server unter macOS, iOS und tvOS sowie den ausbleibenden automatischen VPN-Start auf tvOS nach einem Kaltstart.

All Platforms
  • Fixed: Resolved an issue that could cause a loss in connectivity when a netmap update occurs near the time of reauthentication.
macOS
  • Fixed: Resolved an issue that could prevent exit nodes from appearing when using a custom coordination server.
iOS
  • Fixed: Resolved an issue that could prevent exit nodes from appearing when using a custom coordination server.
tvOS
  • Fixed: Resolved an issue that could prevent exit nodes from appearing when using a custom coordination server.
  • Fixed: Resolved an issue that prevented the VPN tunnel from automatically starting on a cold boot.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Aperture by Tailscale ist allgemein verfügbar (GA)

Aperture ist allgemein verfügbar und bringt unter anderem Modell-Token-Guthaben und -Kauf, Tailscale- und SSH-MCP-Endpunkte, Chat Projects sowie Standard-Tool-Berechtigungen zum Absichern und Verwalten von KI-Agenten und LLM-Sitzungen.

Use Aperture (generally available) to secure and manage AI agents and LLM sessions with cost controls, request and response hooks, guardrails, logging, MCP support, and API proxying.

  • New: A promotional model token credit is included for use with new and existing Aperture gateways.
  • New: Model tokens can be purchased directly in Aperture for major AI models.
  • New: With user approval, Aperture can add nodes to your tailnet with the Tailscale MCP endpoint for Aperture and coding agents.
  • New: Tailnet nodes can be accessed through Tailscale SSH with the SSH MCP endpoint after approval.
  • New: Chat Projects can be used to share instructions, tool access, and tailnet nodes in group chats.
  • New: Baseline tool access can be defined across Aperture chats with default tool permissions.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.102.3: Go 1.26.6, Sicherheitslücke TS-2026-011 und Fixes

Tailscale v1.102.3 aktualisiert Go auf 1.26.6, schließt die Sicherheitslücke TS-2026-011 bei 4via6-Adressen und behebt Probleme mit MagicDNS, Tailnet Lock auf großen Tailnets, dem Windows-Installer und tailscaled sowie den Speicherverbrauch unter iOS und tvOS.

All Platforms
  • Changed: Go is updated to version 1.26.6.
  • Fixed: Tailscale refuses host-scoped IPv4 destinations at every point that acts on an unmapped 4via6 address. This fix addresses a security vulnerability described in TS-2026-011.
  • Fixed: When MagicDNS is disabled, unqualified hostnames are correctly forwarded to the configured nameservers.
  • Fixed: Resolved an issue where nodes with Tailnet Lock enabled on large tailnets would experience startup failures.
Windows
  • Fixed: Resolved an issue where the Windows installer would fail during an upgrade when the name of the user's home directory contained a space.
  • Fixed: tailscaled returns an error instead of panicking on devices where IPv6 or NetBios over TCP/IP is disabled.
iOS
  • Fixed: Memory usage is reduced for iOS devices on large tailnets.
tvOS
  • Fixed: Memory usage is reduced for tvOS devices on large tailnets.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Container Image v1.102.3: Neue Variable TS_BOOT_TIMEOUT

Das Tailscale Container Image v1.102.3 wartet mit der neuen Umgebungsvariable TS_BOOT_TIMEOUT (Standard 60s) länger auf die erste Verbindung zum Coordination Server.

A new release of the Tailscale container image is available. You can download it from Docker Hub or from our GitHub packages repository.

  • New: The container waits longer for its initial connection to the coordination server when you set the new TS_BOOT_TIMEOUT environment variable. It accepts a duration, such as 90s or 3m, and defaults to 60s.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Kubernetes Operator v1.102.3: Peer Relays auf AWS erreichbar

Der Tailscale Kubernetes Operator v1.102.3 behebt, dass Peer Relays auf AWS je nach Availability Zone nicht erreichbar waren, und nutzt für Network Load Balancer HTTP- statt TCP-Health-Checks.

A new release of the Tailscale Kubernetes Operator is available. For guidance on installing and updating, refer to our installation instructions.

  • Fixed: Peer relays on AWS are reachable regardless of the availability zone their pod is scheduled in. Pinning Elastic IPs also requires pinning the pods to the same zone using a ProxyClass.
  • Fixed: Network Load Balancers fronting peer relays on AWS use HTTP instead of TCP for pod health checks. Peer relays listen only on UDP, so the default TCP health check could never succeed, causing every target to be reported as unhealthy.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailnet-Liste-API: Paginierung mit limit und cursor

Der Endpunkt zum Auflisten von Tailnets paginiert Ergebnisse nun standardmäßig mit 100 Einträgen pro Seite und unterstützt die Parameter limit und cursor.

  • Changed: The list tailnets endpoint paginates results. By default, organizations with more than 100 tailnets now receive only the first 100 results, with totalCount and cursor parameters to retrieve additional results.
  • New: limit and cursor query parameters are supported on the list tailnets endpoint. If no limit is specified, the endpoint returns 100 results per page. Use the returned cursor value as the next request's cursor parameter to retrieve the next page until the returned cursor value is empty.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Kubernetes Operator v1.102.2: PeerRelays per Custom Resource

Der Tailscale Kubernetes Operator v1.102.2 ermöglicht unter anderem PeerRelays per Custom Resource, Workload identity federation für die Tailnet-Ressource, 4via6- und IPv6-Unterstützung sowie weniger Log-Ausgaben und behebt Fehler bei MTU-Werten und ProxyGroup-Services.

A new release of the Tailscale Kubernetes Operator is available. For guidance on installing and updating, refer to our installation instructions.

  • New: PeerRelays are deployable in-cluster via a custom resource.
  • New: Annotations can now be applied to the operator's deployment resource via Helm.
  • New: Workload identity federation can now be configured for the Tailnet custom resource.
  • New: 4via6 is supported in connector and egress proxy resources when egressing from a dual-stack cluster.
  • New: IPv6 is supported in Egress ProxyGroups.
  • Changed: Operator log output excludes superfluous entries, such as entries for resources that do not contain annotations.
  • Changed: Several log lines have adjusted log levels.
  • Fixed: MTU values are clamped on both the input and output interfaces, where previously only the output interface was clamped.
  • Fixed: ProxyGroup services no longer fail to reconcile when using the same hostname across multiple tailnets. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale Container Image v1.102.2: Nur Bibliotheksupdates

Das Tailscale Container Image v1.102.2 enthält ausschließlich Bibliotheksupdates.

A new release of the Tailscale container image is available. You can download it from Docker Hub or from our GitHub packages repository.

This version contains no changes except for library updates.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale tsrecorder v1.102.2: Keine Indizierung leerer Platzhalterdateien

Tailscale tsrecorder v1.102.2 versucht beim Start nicht mehr, leere Platzhalterdateien für Aufzeichnungen zu indizieren.

A new release of the Tailscale tsrecorder is available. You can download it from Docker Hub.

  • Fixed: Recorder does not attempt to index empty recording placeholder files on startup.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.102.2: Funnel-Regression behoben

Tailscale v1.102.2 behebt eine Regression, durch die eingehende Tailscale-Funnel-Verbindungen fehlschlugen.

All Platforms
  • Fixed: A regression causing incoming Tailscale Funnel connections to fail is resolved.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.102.1: Neue Serve-Metriken und CLI-Befehle

Tailscale v1.102.1 ergänzt Client-Metriken für Tailscale Serve sowie die CLI-Befehle tailscale get, tailscale whoami und tailscale service list, verarbeitet Node-Änderungen in konstanter Zeit und nutzt für Funnel-Domains TLS-ALPN-01, während veraltete 4via6-MagicDNS-Namensformate entfallen.

All Platforms
  • New: tailscaled_serve_outbound_bytes_total and tailscaled_serve_inbound_bytes_total client metrics report bytes sent to and received from peers on Tailscale Serve connections for Tailscale Services.
  • New: The tailscale get CLI command returns the current node's preferences.
  • New: The tailscale whoami CLI command displays information about the current user and device.
  • New: The tailscale service list CLI command displays Tailscale Services visible to the current node.
  • Changed: Node additions and removals are processed in constant time, significantly reducing CPU usage on large tailnets. This currently applies to all platforms except Windows.
  • Changed: Tailscale Funnel domains use TLS-ALPN-01 for faster HTTPS certificate renewals.
  • Changed: Deprecated formats for 4via6 MagicDNS names are no longer available to use. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailnet creation API für API-only-Tailnets (Alpha)

Die Tailnet creation API erlaubt es, API-only-Tailnets in der eigenen Organisation zu erstellen, aufzulisten und zu löschen (Alpha).

  • New: Use the tailnet creation API to create, list, and delete API-only tailnets in your organization (alpha).

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Tailscale

Tailscale v1.98.10: Sicherheitskorrekturen für Tailscale SSH

Tailscale v1.98.10 behebt Sicherheitslücken bei Tailscale SSH, indem Unix-Socket-Forwarding Symlink-Berechtigungen beachtet und UIDs sowie rein numerische Benutzernamen zusätzlich abgewiesen werden (TS-2026-004 und TS-2026-006).

All Platforms

  • Fixed: Tailscale SSH Unix socket forwarding respects symlink permissions. This fix addresses a security vulnerability described in TS-2026-004.
  • Fixed: Tailscale SSH performs additional checks to disallow UIDs and numeric-only usernames. This fix covers additional scenarios described in TS-2026-006.

Originalquelle(öffnet in neuem Tab)Problem melden