megachangelog
Announcement1.86.2

Tailscale Kubernetes operator v1.86.2

Released v1.86.2 of the Tailscale Kubernetes operator with multiple new features including the Tailscale Kubernetes proxy, kubectl session recording to tsrecorder, improved DNS and proxy group support, and fixes for tag validation and ProxyGroup reliability.

A new release of the Tailscale Kubernetes operator is available. For guidance on installing and updating, refer to our installation instructions.

  • New: The first release of Tailscale Kubernetes proxy is available.
  • New: Record kubectl attach and kubectl debug sessions to tsrecorder.
  • New: Helm chart outputs suggests next steps after installation.
  • New: ProxyGroup type kube-apiserver for running the API server proxy in a high-availability mode.
  • New: ProxyClass can use annotations instead of labels. We recommend using annotations, but labels will continue to work.
  • New: Custom Ingress class names are supported instead of the default tailscale class name.
  • New: Static cluster IP for DNSConfig nameservers.
  • New: Improved direct connectivity to ProxyGroup Pods by using external node IP addresses as static endpoints.
  • Fixed: Tags passed to Tailscale Kubernetes Services are validated using tailscale.com/tags annotation to validate ACL tags.
  • Fixed: Kubernetes operator validates that a cluster does not contain more than one Tailscale Kubernetes Service that refers to the same Tailscale Service.
  • Fixed: Reliability of ProxyGroup proxies when updated and restarted.
kubernetesoperatorproxynetworkingrelease

Source: original entry ↗

More from Tailscale

Follow Tailscale to get its new changes in your feed and email digest.

Improvement1.104.1

Tailscale v1.104.1 — Performance and Features Release

Tailscale v1.104.1 delivers significant performance improvements including reduced WireGuard memory usage, client-side netmap caching for offline resilience, and enhanced features like device pinning, improved Taildrop support, and platform-specific fixes across all supported devices.

performancememorywireguardfeaturesmulti-platform
Feature

Declarative node sharing

Tailnet admins can now use policy to securely share resources between trusted tailnets in a declarative way, enabling controlled cross-tailnet access.

node-sharingpolicysecuritymulti-tailnetaccess-control
Fix1.102.5

Linux client reconnection stability fix

Fixed an issue where the Linux client would stop tailscaled when falling behind on status updates. The client now reconnects instead of exiting, and only terminates if it cannot reconnect within one minute.

linuxstabilityreconnection
See all Tailscale changes →