megachangelog
Improvement1.104.1

Tailscale v1.104.1 — Performance and Features Release

Tailscale v1.104.1 delivers significant performance improvements including reduced WireGuard memory usage, client-side netmap caching for offline resilience, and enhanced features like device pinning, improved Taildrop support, and platform-specific fixes across all supported devices.

All Platforms
  • Changed: WireGuard packet buffering uses less memory while waiting for peer handshakes.
  • Changed: WireGuard packet queue depth scales with CPU core count, reducing peak memory usage under heavy traffic.
Linux
  • New: Client-side netmap caching improves start up speed and connectivity when the Tailscale control plane is unreachable.
  • Changed: WireGuard allocates a single packet buffer for batched I/O, improving throughput and reducing memory usage.
  • Fixed: An issue that could prevent traffic over IPv6 link-local addresses from flowing through direct and Tailscale Peer Relay connections is resolved.
  • Fixed: An issue preventing Linux desktop detection from working on Wayland environments is resolved.
Windows macOS

Note: Tailscale v1.104 is built with Go 1.27, which does not run on macOS Monterey 12 (source). macOS users that want to run the latest version of Tailscale will require macOS Ventura 13 or later. macOS Monterey 12 is no longer supported by Apple and is no longer receiving security updates.

  • New: Client-side netmap caching improves start up speed and connectivity when the Tailscale control plane is unreachable.
  • New: Tailscale Services and Tailscale PAM Services are available in the app window.
  • New: Devices, Exit Nodes, and Services can be pinned to the top of their respective lists in the app window. Pins also appear in the Pinned page of the app window.
  • New: Tailscale's iOS widgets are available on macOS Tahoe 26 and later.
  • New: Taildrop supports URLs and text selections.
  • New: The DisableReauthWindow system policy blocks the re-authentication window from appearing when a user's key has expired.
  • Changed: Disable opening the app window when a device is clicked in Network Devices > Options.
  • Fixed: An issue that could cause exit notes to not appear when using a custom coordination server is resolved.
  • Fixed: An issue that could cause public DNS to silently break when Tailscale is the system DNS resolver is resolved.
iOS

Note: Tailscale v1.104 does not support iOS 15. Users that want to run the latest version of Tailscale will require iOS 16 or later. iOS 15 is no longer supported by Apple for feature updates.

  • New: Devices can be pinned on iOS.
  • New: Taildrop supports URLs and text selections.
  • New: Fast user switching is available in the share sheet.
  • New: Remote client logging can be disabled in the Bug Report menu.
  • Fixed: An issue that could cause exit notes to not appear when using a custom coordination server is resolved.
  • Fixed: An issue that could cause public DNS to silently break when Tailscale is the system DNS resolver is resolved.
tvOS
  • New: Devices can be pinned on tvOS.
  • New: Remote client logging can be disabled in the Bug Report menu.
  • Fixed: An issue that could cause exit notes to not appear when using a custom coordination server is resolved.
  • Fixed: The Devices list properly handles the grid style system keyboard.
  • Fixed: An issue that prevented the VPN tunnel from auto-starting on a cold boot is resolved.
Android
  • New: Devices can be pinned on Android.
  • New: Taildrop supports URLs and text selections.
  • Fixed: An issue with DNS and PeerAPI that could cause Tailscale connections to break when roaming between networks is resolved.
performancememorywireguardfeaturesmulti-platformnetworking

Source: original entry ↗

More from Tailscale

Follow Tailscale to get its new changes in your feed and email digest.

Feature

Declarative node sharing

Tailnet admins can now use policy to securely share resources between trusted tailnets in a declarative way, enabling controlled cross-tailnet access.

node-sharingpolicysecuritymulti-tailnetaccess-control
Fix1.102.5

Linux client reconnection stability fix

Fixed an issue where the Linux client would stop tailscaled when falling behind on status updates. The client now reconnects instead of exiting, and only terminates if it cannot reconnect within one minute.

linuxstabilityreconnection
Improvement

PAM web client shared across browser tabs

The PAM web client at my.tailscale.com now runs as a single shared browser-based Tailscale device across all tabs. After authenticating once, you can connect to services in new tabs without reauthentication, eliminating repeated sign-in prompts.

pamweb-clientauthenticationux
See all Tailscale changes →