IP changes to Tailscale's control plane
Tailscale's control plane domains now resolve to static IP address ranges managed by Tailscale: IPv4 192.200.0.0/24 and IPv6 2606:B740:49::/48. If you use IP-based firewall rules, update them to these ranges instead of relying on DNS resolution.
- Changed: The domains
login.tailscale.com,controlplane.tailscale.com, andapi.tailscale.comresolve to static IP address ranges registered and managed by Tailscale. If IP-based rules are required for your firewall, use the IPv4 range192.200.0.0/24and the IPv6 range2606:B740:49::/48.
Note: In most cases, you do not need to configure firewall rules to use Tailscale. For more information, refer to What firewall ports should I open to use Tailscale?
Source: original entry ↗
More from Tailscale
Follow Tailscale to get its new changes in your feed and email digest.
Tailscale v1.104.1 — Performance and Features Release
Tailscale v1.104.1 delivers significant performance improvements including reduced WireGuard memory usage, client-side netmap caching for offline resilience, and enhanced features like device pinning, improved Taildrop support, and platform-specific fixes across all supported devices.
Declarative node sharing
Tailnet admins can now use policy to securely share resources between trusted tailnets in a declarative way, enabling controlled cross-tailnet access.
Linux client reconnection stability fix
Fixed an issue where the Linux client would stop tailscaled when falling behind on status updates. The client now reconnects instead of exiting, and only terminates if it cannot reconnect within one minute.