Tailscale v1.84.0
This release adds new policy settings for Always On mode across Windows, macOS, and iOS to keep clients automatically connected. It includes fixes for DNS-over-TCP fallback, VPN configuration recreation on startup, GUI startup issues, and stability improvements across all platforms.
- New: The
--reasonflag is added to thetailscale downcommand. - Changed: Tailscale CLI commands throw an error if multiple of the same flag are detected.
- Fixed: Network connectivity issues when creating a new profile or switching profiles while using an exit node.
- Fixed: DNS-over-TCP fallback works correctly with upstream servers reachable only via the tailnet.
- New:
AlwaysOn.EnabledandAlwaysOn.OverrideWithReasonpolicy settings, which enable and configure a Tailscale client mode where the client stays connected at all times, unless an exception applies. - New:
ReconnectAfterpolicy setting, which configures the maximum period of time between a user disconnecting Tailscale and the client automatically reconnecting. - New: When Always On mode is enabled, Tailscale connects as soon as a user signs in to the device and stays connected, regardless of whether the GUI is running. This enables access to tailnet resources, such as network-mapped drives, earlier in the sign-in process, and can also be used on headless Windows environments.
- New:
EnableDNSRegistrationpolicy setting, which configures whether Tailscale IP addresses should be registered with Active Directory DNS. - New: The Tailscale GUI starts for all signed-in users when the client is installed.
- Fixed: DNS-over-TCP fallback works correctly with upstream servers reachable only via the tailnet.
- Fixed: Issue where the Tailscale GUI would not start if the client was installed via Group Policy or mobile device management (MDM) while a user was already signed in.
- Fixed: Issue where the Tailscale GUI did not auto-start after a client update.
- New:
AlwaysOn.EnabledandAlwaysOn.OverrideWithReasonpolicy settings, which enable and configure a Tailscale client mode where the client stays connected at all times, unless an exception applies. - Changed:
ForceEnabledpolicy setting is deprecated in favor of theAlwaysOnpolicy setting. - Fixed: DNS-over-TCP fallback works correctly with upstream servers reachable only via the tailnet.
- Fixed: Tailscale automatically recreates and/or reactivates its VPN configuration on start.
- Fixed: Occasional crash in client during engine updates.
- Fixed: Taildrop share sheet displays the correct error page when the tunnel is not connected.
- Fixed: Hostname detection is improved for macOS clients running on macOS v15.x.
- Fixed: Client (GUI) logs are properly captured and recorded in bug reports.
- New:
AlwaysOn.EnabledandAlwaysOn.OverrideWithReasonpolicy settings, which enable and configure a Tailscale client mode where the client stays connected at all times, unless an exception applies. - Changed:
ForceEnabledpolicy setting is deprecated in favor of theAlwaysOnpolicy setting. - Fixed: Taildrop share sheet displays the correct error page when the tunnel is not connected.
- Fixed: Tailscale automatically recreates and/or reactivates its VPN configuration on start.
- Fixed: Client (GUI) logs are properly captured and recorded in bug reports.
- Fixed: Occasional crash in client during engine updates.
- Fixed: Tailscale automatically recreates and/or reactivates its VPN configuration on start.
- Fixed: Client (GUI) logs are properly captured and recorded in bug reports.
- Fixed: Occasional crash in client during engine updates.
- New:
ReconnectAfterpolicy setting, which configures the maximum period of time between a user disconnecting Tailscale and the client automatically reconnecting. - Fixed: Issue where Tailscale was disconnecting after excluding apps via split tunneling.
Source: original entry ↗
More from Tailscale
Follow Tailscale to get its new changes in your feed and email digest.
Tailscale v1.104.1 — Performance and Features Release
Tailscale v1.104.1 delivers significant performance improvements including reduced WireGuard memory usage, client-side netmap caching for offline resilience, and enhanced features like device pinning, improved Taildrop support, and platform-specific fixes across all supported devices.
Declarative node sharing
Tailnet admins can now use policy to securely share resources between trusted tailnets in a declarative way, enabling controlled cross-tailnet access.
Linux client reconnection stability fix
Fixed an issue where the Linux client would stop tailscaled when falling behind on status updates. The client now reconnects instead of exiting, and only terminates if it cannot reconnect within one minute.