<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Changelog on Tailscale</title>
    <link>https://tailscale.com/changelog/</link>
    <description>Recent content in Changelog on Tailscale</description>
    <language>en-US</language>
    <lastBuildDate>Thu, 01 Jan 1970 00:00:00 +0000</lastBuildDate>
    
	<atom:link href="https://tailscale.com/changelog/index.xml" rel="self" type="application/rss+xml" />
    
    
    <item>
      <title>Updated Users page</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-23-service</link>
      <pubDate>Fri, 23 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-23-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://login.tailscale.com/admin/users&#34;&gt;&lt;strong&gt;Users&lt;/strong&gt;&lt;/a&gt; page of the admin console updated to provide more context around &lt;a href=&#34;https://tailscale.com/kb/1271/invite-any-user&#34;&gt;user invitations&lt;/a&gt;, &lt;a href=&#34;https://tailscale.com/kb/1239/user-approval&#34;&gt;user approval&lt;/a&gt;, and your tailnet&amp;rsquo;s &lt;a href=&#34;https://tailscale.com/kb/1013/sso-providers&#34;&gt;identity provider&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Exit node visibility</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-22-service</link>
      <pubDate>Thu, 22 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-22-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: Users can only see &lt;a href=&#34;https://tailscale.com/kb/1103/exit-nodes&#34;&gt;exit nodes&lt;/a&gt; they have permission to use, based on the &lt;a href=&#34;https://tailscale.com/kb/1337/acl-syntax#subnet-routers-and-exit-nodes&#34;&gt;ACL&lt;/a&gt; settings for a tailnet. This includes visibility in the Tailscale client and the output for &lt;a href=&#34;https://tailscale.com/kb/1080/cli&#34;&gt;Tailscale CLI&lt;/a&gt; commands such as &lt;a href=&#34;https://tailscale.com/kb/1080/cli#status&#34;&gt;&lt;code&gt;tailscale status&lt;/code&gt;&lt;/a&gt; and &lt;a href=&#34;https://tailscale.com/kb/1080/cli#exit-node&#34;&gt;&lt;code&gt;tailscale exit-node list&lt;/code&gt;&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Preset Apps GA</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-22-service</link>
      <pubDate>Thu, 22 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-22-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: Preset Apps  GA (&lt;a href=&#34;https://tailscale.com/kb/1167/release-stages/#general-availability-ga&#34;&gt;generally available&lt;/a&gt;)
&lt;ul&gt;
&lt;li&gt;Use &lt;a href=&#34;https://tailscale.com/kb/1339/preset-apps/&#34;&gt;Preset Apps&lt;/a&gt; to configure common applications with only a few clicks or an ACL configuration. Routes and domains for Preset Apps are automatically updated and managed by Tailscale, based on each app’s source of truth. Routes for preset apps are automatically approved and pushed down to all selected &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors/&#34;&gt;App connectors&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;New: Confluence, GitHub, Google Workspace, Jira, Okta, and Stripe are now available as preset apps&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Updated pricing plans</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-21-service</link>
      <pubDate>Wed, 21 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-21-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: The Free &lt;a href=&#34;https://tailscale.com/pricing&#34;&gt;pricing plan&lt;/a&gt; is now called the Personal plan. All other aspects of the plan remain the same.&lt;/li&gt;
&lt;li&gt;New: Customers who sign up with a custom domain will be auto-enrolled into a 14-day trial of the Enterprise plan with no provisioned user limits&lt;/li&gt;
&lt;li&gt;New: Personal plan customers who use a custom or vanity domain for their tailnet can opt out of the trial and continue to use the Personal plan&lt;/li&gt;
&lt;li&gt;Changed: Customers who use Tailscale for commercial purposes will be billed for all of their &lt;a href=&#34;https://tailscale.com/kb/1251/pricing-faq#how-are-monthly-active-users-defined&#34;&gt;active users&lt;/a&gt; once they sign up for a plan&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;em&gt;Note&lt;/em&gt;: Free trials are available for business customers. For details about billing, plan comparison, and support, see &lt;a href=&#34;https://tailscale.com/kb/1251/pricing-faq&#34;&gt;Pricing &amp;amp; Plans FAQ&lt;/a&gt;. For instructions on how to change your plan, see &lt;a href=&#34;https://tailscale.com/kb/1182/billing-information&#34;&gt;Modify billing&lt;/a&gt;.&lt;/p&gt;
</description>
    </item>
    
    <item>
      <title>Tailscale v1.60.0</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-15-client</link>
      <pubDate>Thu, 15 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-15-client</guid>
      <description>&lt;h6 id=&#34;all-platforms&#34;&gt;All platforms&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1080/cli#status&#34;&gt;&lt;code&gt;tailscale status&lt;/code&gt;&lt;/a&gt; command output now includes location-based exit nodes&lt;/li&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1080/cli#web&#34;&gt;&lt;code&gt;tailscale web&lt;/code&gt;&lt;/a&gt; command flag &lt;code&gt;--read-only&lt;/code&gt; is added to run the web UI in read-only mode&lt;/li&gt;
&lt;li&gt;New: A warning is logged when unable to find SSH host keys&lt;/li&gt;
&lt;li&gt;New: Support added for legacy &amp;ldquo;urn:dslforum-org&amp;rdquo; port mapping services&lt;/li&gt;
&lt;li&gt;Changed: Build with Go 1.22&lt;/li&gt;
&lt;li&gt;Changed: Detect when Tailscale is running on Digital Ocean and automatically use Digital Ocean&amp;rsquo;s DNS resolvers&lt;/li&gt;
&lt;li&gt;Changed: Expose gVisor metrics in debug mode&lt;/li&gt;
&lt;li&gt;Changed: Improve error message when running as non-root&lt;/li&gt;
&lt;li&gt;Fixed: A valid login page is presented to users when attempting to log in even after leaving device unattended for several days&lt;/li&gt;
&lt;li&gt;Fixed: An issue with noisy peer mtu discovery errors&lt;/li&gt;
&lt;li&gt;Fixed: A potential crash when no supported port mapping services are found&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;windows&#34;&gt;Windows&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed:&lt;code&gt;tailscaled&lt;/code&gt; could be slow or cause increased CPU usage with large routing tables&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;macos&#34;&gt;macOS&lt;/h6&gt;
&lt;p&gt;&lt;em&gt;Note&lt;/em&gt;: Tailscale v1.60.0 is built with Go 1.22 and Go 1.22 is the last release that will run on macOS 10.15 Catalina (&lt;a href=&#34;https://tip.golang.org/doc/go1.22#darwin&#34;&gt;source&lt;/a&gt;). We are providing notice that around August 15, 2024, Tailscale will be built with Go 1.23 at which time macOS users that want to run the latest version of Tailscale will require macOS 11 Big Sur or later. Note that macOS 10.15 Catalina is no longer supported by Apple and is no longer receiving security updates.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;New: New UI to add, remove, and switch between user accounts, including using custom control servers&lt;/li&gt;
&lt;li&gt;New: New UI to change client preferences&lt;/li&gt;
&lt;li&gt;New: New UI to manage updates for the Standalone variant of the client, including switching in-app between stable and unstable builds&lt;/li&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1291/ios-vpn-on-demand/&#34;&gt;VPN On-Demand&lt;/a&gt; is now supported on macOS, to automatically connect/disconnect Tailscale when specific conditions are triggered&lt;/li&gt;
&lt;li&gt;New: &lt;strong&gt;Reset VPN Configuration&lt;/strong&gt; menu item in the &lt;strong&gt;Debug&lt;/strong&gt; menu is now available to reset the system VPN configuration if needed&lt;/li&gt;
&lt;li&gt;New: An alert window is presented when the Tailscale network extension fails to start, providing suggested troubleshooting steps&lt;/li&gt;
&lt;li&gt;Changed: Tailscale appears in the macOS Dock when an app window is presented&lt;/li&gt;
&lt;li&gt;Changed: The &lt;strong&gt;Network Devices&lt;/strong&gt; list now shows all devices known to the control server, not only those seen in the last 4 days&lt;/li&gt;
&lt;li&gt;Changed: The onboarding flow automatically advances once the user is connected&lt;/li&gt;
&lt;li&gt;Fixed: A potential crash and excessive logging upon client launch&lt;/li&gt;
&lt;li&gt;Fixed: &lt;strong&gt;Start on Login&lt;/strong&gt; is set correctly on macOS Ventura and earlier versions&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;ios&#34;&gt;iOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: A potential crash and excessive logging upon client launch&lt;/li&gt;
&lt;li&gt;Fixed: Stale devices are no longer presented in the devices list&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;tvos&#34;&gt;tvOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: A potential crash and excessive logging upon client launch&lt;/li&gt;
&lt;li&gt;Fixed: Stale devices are no longer presented in the devices list&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;android&#34;&gt;Android&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Changed: Mullvad exit nodes now sorted to make it easier to find the best node for each location&lt;/li&gt;
&lt;li&gt;Changed: Mullvad tunnels are no longer shown as regular nodes in UI&lt;/li&gt;
&lt;li&gt;Fixed: Quick settings tile now works&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;synology&#34;&gt;Synology&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: An issue with stalling of SMB transfers of large files&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;kubernetes-operator&#34;&gt;Kubernetes operator&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: A new &lt;code&gt;ProxyClass&lt;/code&gt; custom resource that allows you to provide a custom configuration for cluster resources that the operator creates&lt;/li&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1068/acl-tags/&#34;&gt;ACL tags&lt;/a&gt; for the operator can now be configured via Helm chart values&lt;/li&gt;
&lt;li&gt;Fixed: Routing to Ingress backends that require an exact path without a slash (&lt;code&gt;/&lt;/code&gt;) suffix&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;app-connectors&#34;&gt;App connectors&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors&#34;&gt;App connectors&lt;/a&gt; now flatten DNS CNAME chains down to a target A/AAAA routing record, for apps that are configured with a DNS record that is a CNAME&lt;/li&gt;
&lt;li&gt;New: Apps can be preconfigured with known routes to have those routes auto-advertised by all selected app connectors, and immediately begin to route traffic&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Auto-updates GA</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-14-service</link>
      <pubDate>Wed, 14 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-14-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://tailscale.com/kb/1067/update#auto-updates&#34;&gt;Auto-updates&lt;/a&gt; GA (&lt;a href=&#34;https://tailscale.com/kb/1167/release-stages/#general-availability-ga&#34;&gt;generally available&lt;/a&gt;)&lt;/li&gt;
&lt;li&gt;New: Enable Tailscale client auto-updates in the &lt;a href=&#34;https://login.tailscale.com/admin/settings/device-management&#34;&gt;&lt;strong&gt;Device management&lt;/strong&gt;&lt;/a&gt; section of the admin console&lt;/li&gt;
&lt;li&gt;New: Initiate Tailscale client updates to devices from the &lt;a href=&#34;https://login.tailscale.com/admin/machines&#34;&gt;&lt;strong&gt;Machines&lt;/strong&gt;&lt;/a&gt; page of the admin console. For details, see &lt;a href=&#34;https://tailscale.com/kb/1067/update#auto-updates&#34;&gt;Auto-updates&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>App connectors wildcard support change</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-12-service</link>
      <pubDate>Mon, 12 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-12-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: New Apps and &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors/&#34;&gt;app connectors&lt;/a&gt; can no longer be selected via the &lt;code&gt;*&lt;/code&gt; wildcard in a tailnet policy file or configuration flow. Instead, &lt;a href=&#34;https://tailscale.com/kb/1068/acl-tags&#34;&gt;tag&lt;/a&gt; all app connectors and then use the tags as a selector. Existing &lt;code&gt;*&lt;/code&gt; configurations will need to update to a tag-based selector upon the next tailnet policy file change. For details, see &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors/#wildcard-connectors-no-longer-supported&#34;&gt;Wildcard connectors no longer supported&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>System policies GA</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-12-service</link>
      <pubDate>Mon, 12 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-12-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: System policies GA (&lt;a href=&#34;https://tailscale.com/kb/1167/release-stages/#general-availability-ga&#34;&gt;generally available&lt;/a&gt;)
&lt;ul&gt;
&lt;li&gt;Use &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys&#34;&gt;system policies&lt;/a&gt; (also known as MDM policies) to control Tailscale client settings for your users, such as UI visibility, organization customization, auto-update functionality, and runtime configurations&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Secret scanning with GitGuardian</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-02-05-service</link>
      <pubDate>Mon, 05 Feb 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-02-05-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: Secret scanning integration with &lt;a href=&#34;https://www.gitguardian.com/&#34;&gt;GitGuardian&lt;/a&gt;
&lt;ul&gt;
&lt;li&gt;Use &lt;a href=&#34;https://tailscale.com/kb/1301/secret-scanning/&#34;&gt;secret scanning&lt;/a&gt; to help mitigate accidental disclosure and prevent fraudulent use of &lt;a href=&#34;https://tailscale.com/kb/1252/key-secret-management/&#34;&gt;Tailscale-generated keys&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Support Device Posture in ACL tests</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-29-service</link>
      <pubDate>Mon, 29 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-29-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: Device Posture is now supported in &lt;a href=&#34;https://tailscale.com/kb/1018/acls#tests&#34;&gt;ACL Tests&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Tailscale v1.58.2</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-23-client</link>
      <pubDate>Tue, 23 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-23-client</guid>
      <description>&lt;p&gt;&lt;em&gt;Note:&lt;/em&gt; The 1.58.1 release needed to be re-done. Use 1.58.2 instead.&lt;/p&gt;
&lt;h6 id=&#34;all-platforms&#34;&gt;All platforms&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors&#34;&gt;App connectors&lt;/a&gt; have improved scheduling and merging of route changes under some conditions&lt;/li&gt;
&lt;li&gt;Fixed: Crash when performing UPnP portmapping on older routers with no supported portmapping services&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;macos&#34;&gt;macOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: Opening the &lt;strong&gt;About&lt;/strong&gt; window no longer displays a user interface when there is no newer version&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Tailscale v1.58.0</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-18-client</link>
      <pubDate>Thu, 18 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-18-client</guid>
      <description>&lt;p&gt;&lt;em&gt;Note:&lt;/em&gt; Rollout of 1.58.0 paused on 21-Jan-2024 while we investigate reports of a regression with portmapping.&lt;/p&gt;
&lt;h6 id=&#34;all-platforms&#34;&gt;All platforms&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Changed: The number of &lt;a href=&#34;https://tailscale.com/kb/1201/4via6-subnets&#34;&gt;4via6&lt;/a&gt; site IDs are increased from 256 to 65,536&lt;/li&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://tailscale.com/kb/1106/taildrop&#34;&gt;Taildrop&lt;/a&gt; allows category Z unicode characters&lt;/li&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://tailscale.com/kb/1232/derp-servers&#34;&gt;DERP&lt;/a&gt; flapping (flipping back and forth between two regions rapidly) is reduced when there&amp;rsquo;s still an active connection for the home DERP server&lt;/li&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://tailscale.com/kb/1257/connection-types#hard-nat&#34;&gt;Portmap&lt;/a&gt; checks the epoch from NAT-PMP &amp;amp; PCP, and establishes a new portmapping if it changes&lt;/li&gt;
&lt;li&gt;Changed: Portmap better handles multiple interfaces&lt;/li&gt;
&lt;li&gt;Changed: Portmap handles multiple UPnP discovery responses&lt;/li&gt;
&lt;li&gt;Changed: Increased binary size with Tailscale 1.56 is resolved&lt;/li&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1325/device-web-interface&#34;&gt;Web interface&lt;/a&gt; issue related to accessing shared devices&lt;/li&gt;
&lt;li&gt;Fixed: Web interface login issue when accessed over HTTPS&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;linux&#34;&gt;Linux&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: Shell shebang is added in postinstall script, which fixes some Debian installations&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;macos&#34;&gt;macOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: &lt;strong&gt;DNS Settings&lt;/strong&gt; view is added and displays the DNS configuration used when Tailscale is running&lt;/li&gt;
&lt;li&gt;New: Quit the app without terminating the VPN tunnel by holding down the &lt;strong&gt;Option&lt;/strong&gt; button and selecting &lt;strong&gt;Quit (Leave VPN Active)&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;New: &lt;strong&gt;Toggle Tailscale&lt;/strong&gt; shortcut action can be used to connect or disconnect the VPN tunnel, depending on its current state&lt;/li&gt;
&lt;li&gt;New: The &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys#set-the-key-expiration-notice-period&#34;&gt;&lt;code&gt;KeyExpirationNotice&lt;/code&gt;&lt;/a&gt; system policy is now supported to customize the time interval before a key expiration notice is displayed to the user&lt;/li&gt;
&lt;li&gt;New: The &lt;a href=&#34;https://tailscale.com/kb/1325/device-web-interface&#34;&gt;web interface&lt;/a&gt; is now supported in the &lt;a href=&#34;https://tailscale.com/kb/1065/macos-variants&#34;&gt;standalone&lt;/a&gt; variant of the client&lt;/li&gt;
&lt;li&gt;Changed: Onboarding flow includes a step to ask the user to approve key expiry notifications&lt;/li&gt;
&lt;li&gt;Changed: Onboarding flow asks the user to approve the system extension if necessary, when using the standalone variant of the client&lt;/li&gt;
&lt;li&gt;Changed: Pre-Sonoma compatibility is improved&lt;/li&gt;
&lt;li&gt;Fixed: VPN tunnel terminates upon closing the app&lt;/li&gt;
&lt;li&gt;Fixed: Opening the &lt;strong&gt;About&lt;/strong&gt; window triggers a check for updates&lt;/li&gt;
&lt;li&gt;Fixed: The standalone variant of the client checks for updates every 72 hours&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;ios&#34;&gt;iOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: &lt;strong&gt;Toggle Tailscale&lt;/strong&gt; shortcut action can be used to connect or disconnect the VPN tunnel, depending on its current state. Ideal for the &lt;strong&gt;Action Button&lt;/strong&gt; on iPhone 15 Pro.&lt;/li&gt;
&lt;li&gt;New: The &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys#set-the-key-expiration-notice-period&#34;&gt;&lt;code&gt;KeyExpirationNotice&lt;/code&gt;&lt;/a&gt; system policy is now supported to customize the time interval before a key expiration notice is displayed to the user&lt;/li&gt;
&lt;li&gt;Fixed: &lt;strong&gt;Sign&lt;/strong&gt; button in the &lt;a href=&#34;https://tailscale.com/kb/1226/tailnet-lock&#34;&gt;Tailnet lock&lt;/a&gt; device sign view is rendered correctly&lt;/li&gt;
&lt;li&gt;Fixed: Connectivity is no longer lost when transitioning from Wi-Fi to Cellular while an &lt;a href=&#34;https://tailscale.com/kb/1103/exit-nodes&#34;&gt;exit node&lt;/a&gt; is in use&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;windows&#34;&gt;Windows&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: The &lt;a href=&#34;https://tailscale.com/kb/1325/device-web-interface&#34;&gt;web interface&lt;/a&gt; is now supported&lt;/li&gt;
&lt;li&gt;Changed: The lookup for &lt;code&gt;netsh.exe&lt;/code&gt; uses the absolute path instead of the relative path&lt;/li&gt;
&lt;li&gt;Changed: ADMX &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys&#34;&gt;system policy&lt;/a&gt; descriptions are now available&lt;/li&gt;
&lt;li&gt;Changed: Vestigial wintun support is removed, which might have caused Chocolatey installs to break&lt;/li&gt;
&lt;li&gt;Fixed: A goroutine leak in winMon no longer occurs if the monitor is never started&lt;/li&gt;
&lt;li&gt;Fixed: &amp;ldquo;This package requires Windows 10 or newer&amp;rdquo; message no longer falsely displays during an uninstall or repair&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;android&#34;&gt;Android&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: Active network change detection is improved&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;tvos&#34;&gt;tvOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: Improvements to persistence of the client when running in the background&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;kubernetes-operator&#34;&gt;Kubernetes Operator&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;New: A Connector custom resource is added, allowing users to configure the operator to deploy an &lt;a href=&#34;https://tailscale.com/kb/1103/exit-nodes&#34;&gt;exit node&lt;/a&gt;, &lt;a href=&#34;https://tailscale.com/kb/1019/subnets&#34;&gt;subnet router&lt;/a&gt;, or both&lt;/li&gt;
&lt;li&gt;Changed: A warning displays if the unsupported ingress &lt;code&gt;Exact&lt;/code&gt; path type is used&lt;/li&gt;
&lt;li&gt;Changed: StatefulSet labels are synced to their Pods&lt;/li&gt;
&lt;li&gt;Changed: A Tailscale &lt;a href=&#34;https://kubernetes.io/docs/concepts/services-networking/ingress/#ingress-class&#34;&gt;IngressClass&lt;/a&gt; resource is added&lt;/li&gt;
&lt;li&gt;Changed: Extra long &lt;a href=&#34;https://tailscale.com/kb/1236/kubernetes-operator#loadbalancerclass&#34;&gt;Service&lt;/a&gt; names are properly truncated&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;containers&#34;&gt;Containers&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Changed: Experimental support is added for configuring &lt;a href=&#34;https://tailscale.com/kb/1278/tailscaled&#34;&gt;&lt;code&gt;tailscaled&lt;/code&gt;&lt;/a&gt; using a mounted config file&lt;/li&gt;
&lt;li&gt;Fixed: Tailscale images now contain layers of the same media type and can be parsed by &lt;a href=&#34;https://podman.io/&#34;&gt;Podman&lt;/a&gt; and &lt;a href=&#34;https://buildah.io/&#34;&gt;Buildah&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Support for Zoho</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-12-service</link>
      <pubDate>Fri, 12 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-12-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: Zoho is now supported as a &lt;a href=&#34;https://tailscale.com/kb/1240/sso-custom-oidc&#34;&gt;custom OIDC provider&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Security update indicators and filter in the admin console</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-10-service</link>
      <pubDate>Wed, 10 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-10-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: Available update icons on the &lt;a href=&#34;https://login.tailscale.com/admin/machines&#34;&gt;&lt;strong&gt;Machines&lt;/strong&gt;&lt;/a&gt; page of the admin console now differentiate between regular and security updates&lt;/li&gt;
&lt;li&gt;Changed: The Version filter on the &lt;a href=&#34;https://login.tailscale.com/admin/machines&#34;&gt;&lt;strong&gt;Machines&lt;/strong&gt;&lt;/a&gt; page can now show nodes with pending security updates&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Tailscale v1.44.3</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-08-client</link>
      <pubDate>Mon, 08 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-08-client</guid>
      <description>&lt;h6 id=&#34;windows&#34;&gt;Windows&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: Added a security fix to address privilege escalation with &lt;a href=&#34;https://tailscale.com/kb/1242/tailscale-serve&#34;&gt;&lt;code&gt;tailscale serve&lt;/code&gt;&lt;/a&gt; and &lt;a href=&#34;https://tailscale.com/kb/1311/tailscale-funnel&#34;&gt;&lt;code&gt;tailscale funnel&lt;/code&gt;&lt;/a&gt; that allowed low-privilege users to serve files they did not have access to (&lt;a href=&#34;https://tailscale.com/security-bulletins/#ts-2024-001&#34;&gt;TS-2024-001&lt;/a&gt;). This release is intended for Windows 7 and 8 users. Those with later versions of Windows should run the latest stable version of Tailscale, which is 1.56.1. This issue was resolved in Tailscale 1.52.push&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Invite any user to a GitHub tailnet</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2024-01-02-service</link>
      <pubDate>Tue, 02 Jan 2024 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2024-01-02-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: &lt;a href=&#34;https://tailscale.com/kb/1271/invite-any-user&#34;&gt;Invite any user&lt;/a&gt; to your tailnet when using a GitHub organization or GitHub personal account as the &lt;a href=&#34;https://tailscale.com/kb/1284/sso-github&#34;&gt;identity provider&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>HTTPS certificates GA</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2023-12-20-service</link>
      <pubDate>Wed, 20 Dec 2023 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2023-12-20-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;Changed: HTTPS certificates GA (&lt;a href=&#34;https://tailscale.com/kb/1167/release-stages/#general-availability-ga&#34;&gt;generally available&lt;/a&gt;)
&lt;ul&gt;
&lt;li&gt;Use &lt;a href=&#34;https://tailscale.com/kb/1153/enabling-https/&#34;&gt;HTTPS certificates&lt;/a&gt; to provision TLS certificates for devices in your tailnet&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>View machine certificate status</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2023-12-20-service</link>
      <pubDate>Wed, 20 Dec 2023 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2023-12-20-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: &lt;a href=&#34;https://tailscale.com/kb/1153/enabling-https/#view-certificate-status&#34;&gt;View the TLS certificate status&lt;/a&gt; of a machine in your tailnet by using the &lt;a href=&#34;https://login.tailscale.com/admin/machines&#34;&gt;&lt;strong&gt;Machines&lt;/strong&gt;&lt;/a&gt; page of the admin console&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>Tailscale v1.56.1</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2023-12-15-client</link>
      <pubDate>Fri, 15 Dec 2023 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2023-12-15-client</guid>
      <description>&lt;h6 id=&#34;linux&#34;&gt;Linux&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1325/device-web-interface&#34;&gt;Web interface&lt;/a&gt; redirects to the correct self-IP known by the source peer&lt;/li&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1281/app-connectors&#34;&gt;App connector&lt;/a&gt; domain list displays as expected&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;macos&#34;&gt;macOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys#set-a-custom-control-server-url&#34;&gt;Custom login server&lt;/a&gt; uses the provided URL instead of &lt;code&gt;login.tailscale.com&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;ios&#34;&gt;iOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys#set-a-custom-control-server-url&#34;&gt;Custom login server&lt;/a&gt; uses the provided URL instead of &lt;code&gt;login.tailscale.com&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h6 id=&#34;tvos&#34;&gt;tvOS&lt;/h6&gt;
&lt;ul&gt;
&lt;li&gt;Fixed: &lt;a href=&#34;https://tailscale.com/kb/1315/mdm-keys#set-a-custom-control-server-url&#34;&gt;Custom login server&lt;/a&gt; uses the provided URL instead of &lt;code&gt;login.tailscale.com&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>ACL Grants</title>
      
      
        
      
      <link>https://tailscale.com/changelog/#2023-12-14-service</link>
      <pubDate>Thu, 14 Dec 2023 00:00:00 +0000</pubDate><guid>https://tailscale.com/changelog/#2023-12-14-service</guid>
      <description>&lt;ul&gt;
&lt;li&gt;New: Use &lt;a href=&#34;https://tailscale.com/kb/1324/acl-grants&#34;&gt;ACL Grants&lt;/a&gt; in your &lt;a href=&#34;https://tailscale.com/kb/1155/terminology-and-concepts/#tailnet-policy-file&#34;&gt;tailnet policy file&lt;/a&gt; to provide capabilities at either the IP layer or the application layer (&lt;a href=&#34;https://tailscale.com/kb/1167/release-stages/#beta&#34;&gt;beta&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
  </channel>
</rss>
