November Tailscale newsletter

November Tailscale newsletter

👉 We’d love to hear what you think about Tailscale, and filling out this Google form helps us build a better product for you!

🛎️ Tailscale has recently been notified of security vulnerabilities in the Tailscale Windows client. If you are running Tailscale on Windows, upgrade to Tailscale v1.32.3 or later, or v1.33.257 or later (unstable), to remediate the issue.

🚀 It’s been a dramatic month across the tech industry, but we have some good news: Tailscale is hiring! We’re looking for driven individuals who think differently, enjoy collaborating with highly technical remote teams, and are comfortable working asynchronously. See our open roles below, and learn more about our company vision.

Despite gearing up for eating turkey (for those of us in the U.S., anyway), we’ve had a lively November at Tailscale. We launched Tailscale Funnel, which makes it simple (and still secure) to route traffic from the internet to a node in your tailnet. We’ve developed a guide for using tsnet to make your internal services easier to run, access, and secure; and we put together an inside look at how we built our new webhooks feature. Plus: Tailscale has joined the Fediverse! You can now follow us on Hachyderm.

We’ve got lots of community contributions and new Tailscale features to share. Let’s jump in:

From the community

Build a Tailscale exit node with firewalld

• Major.io covers how to create an exit node for your Tailscale network using firewalld Fedora, CentOS Stream, and Red Hat Enterprise Linux (RHEL).

Private Kubernetes ingress with Contour and Tailscale

• Twitter user @cschmatzler declares: “The star of the show here is Tailscale.”

The Download: Featuring Tailscale’s WASM SSH client [video]

• Christina Warren explains on GitHub’s YouTube channel that “Tailscale makes it really easy to SSH into your various devices from anywhere in the world” without “getting stuck in a black hole of networking and DNS errors.”

Building virtual networks with Pulumi and Tailscale

• Register for a one-hour Pulumi workshop that will demonstrate how to securely connect end-user devices and cloud resources using modern infrastructure as code written in real programming languages.

How to create your own VPN with Tailscale

• Matt Haughey at A Whole Lotta Nothing shares how to create your own VPN with Tailscale “to get around stupid free Wi-Fi network rules and protect your traffic.”

Tailscale on a Linux Guix machine

• GitHub user awb99 created a custom Guix Tailwind package and a custom Tailwind service for getting Tailscale to work on Guix.

Exchanging OIDC tokens for Tailscale auth keys

• Twitter user Johan Siebens shares a “ Friday morning hack: a little service exchanging OIDC tokens for short-lived, one-time use Tailscale auth keys."

Remote reboots with encrypted disks

• Blogger Tavian Barnes explains how Tailscale helps him remotely reboot his computer with full disk encryption.

The Kubelist Podcast, ep. 33: Tailscale with Avery Pennarun [audio]

• Hosts Marc Campbell and Benjie De Groot chat with Avery Pennarun about VPNs, mesh-overlay networks, the relationship between scaling and architecture, and lots more.

A HashiCorp Vault plugin for managing Tailscale authentication keys

• GitHub user David Bond offers a HashiCorp Vault plugin for generating device authentication keys for Tailscale.

From the team

Introducing Tailscale Funnel

• With Tailscale Funnel, you can publicly share things from a node in your tailnet for anyone to access, even if they don’t have Tailscale.

Tailscale on the Fediverse

• We want to make it easier for you to keep in touch with us, so we’ve created a Fediverse account on Hachyderm.

Virtual private services with tsnet

• Tailscale’s Xe Iaso covers how to use tsnet to get all of the goodness of Tailscale in userspace so that you can have your services join your tailnet like they were separate computers.

Making your Tailscale experience a little more eventful with webhooks

• Laura Florea offers an insider’s look into how Tailscale developed one of our most requested features: webhooks.

Tailscale in real life

Tailscale Runs Anywhere I Need (TRAIN)

• Katie Reese explains how 11 Tailscalars boarded a train from San Francisco to Seattle to prove that Tailscale really can run anywhere.

Tailscale learning library

We are building a learning library to help folks at any stage in their career. If you have a topic you’d like to see covered, send us a tweet @Tailscale.

Understanding mesh VPNs

• Mesh VPNs use a peer-to-peer architecture to offer greater resiliency, scalability, and performance than conventional VPNs. This article outlines the features, benefits, and use cases of mesh VPNs.

Why remote workers should use a VPN

• As the popularity of remote work has skyrocketed, so have malicious attacks attempting to gain access to companies’ infrastructure and assets. Explore how using a virtual private network can help remote workers keep their company network secure.

That’s all for now. Stay well!

🔈P.S. Leaving a review on G2 helps more teams find Tailscale. We’d really appreciate it if you took the time to put in a good word.


Author
Mark Ogilbee