
Tailscale - Programmable networking software for secure remote access
Secure access has simplified remote networks but identity limits and GDPR clarity need work
What is our primary use case?
I mainly use Tailscale to connect fairly simple networks for both companies and private clients in my organization. For example, when a client orders or wants a low-cost infrastructure to connect their NAS or shared storage, I can recommend Tailscale to them. You need to document the routes and you have to be serious about that regarding your use of this tool in this type of context, otherwise it quickly becomes a mess.
How has it helped my organization?
For one client in particular who wanted ZTNA, I was able to implement it through granular access for each of his sites and each of his devices. Conditional access—I say conditional but it's not exactly that—which actually allowed a simple, clear and effective implementation, has had a positive impact on the organization or clients.
Time savings is significant, and there is nothing to say on that. Efficiency as well. Those are the main benefits, such as time savings, cost savings, or a reduction in incidents thanks to Tailscale.
What is most valuable?
The exit node is quite good, and the fact that it is almost zero touch, apart from if you really want to secure it for ZTNA or something else, are the best features that Tailscale offers. The simplicity of access is the main advantage.
With a Gmail or other email, you can easily set up the VPN in a very simple way and get the result you want. Simplicity and deployment are the main reasons that led me to choose this tool rather than another VPN or ZTNA solution.
I come back again to the availability of the tool, its solid security aspect with supported MFA and the principle of least privilege, which were the most important criteria for me when selecting this tool compared to other similar solutions. I know it also uses WireGuard technology, which interested me.
What needs improvement?
Regarding the supported emails, I understand it is strong authentication, so it has to be Apple, Gmail or others, but this creates certain limits for some clients who do not want to have that kind of email. We lose clients because of that, and we are forced to look at other solutions regarding the features of this tool.
Tailscale could be improved by giving more focus on the security and readability aspects. The main strength is the simplicity of deployment and the technical possibilities offered, such as exit nodes. However, as soon as the infrastructure becomes large, you have to document the routes, the subnet routers, and the access policies. At that point you are back to the same rigor as with a traditional network infrastructure. That is annoying, not because it cannot be done, but because you expect more ease from this kind of tool.
The GDPR data policy is not very clear to me. For example, if I use Tailscale Cloud, what is read by your servers and what is not read? How does it work? There is a lack of visibility. I know that sometimes clients ask me, and I do not have the answer, which is why I chose a rating of seven.
Clients who would have liked to subscribe to a paid Tailscale plan and who cannot authenticate because they refuse to have an email with strong authentication as required are the main challenges or obstacles I have encountered when integrating Tailscale into my environment. This is a good thing, but it is blocking.
For how long have I used the solution?
I have known Tailscale for two years.
What do I think about the stability of the solution?
Once it is installed and configured, it is very stable in my different usage environments.
What do I think about the scalability of the solution?
I do not have enough experience to answer the question regarding scalability and how I rate Tailscale's scalability in my projects or with my clients.
How are customer service and support?
Support could not give me more than what I wanted and the documentation was outdated and not up to date regarding Mac situations.
I rarely needed to contact them, basically only for Mac, and I would not say I was dissatisfied, but I did not get the adequate answers to solve my problem.
Which solution did I use previously and why did I switch?
I used Fortinet and FortiClient before using Tailscale.
Mainly for cost reasons did I decide to switch from Fortinet to Tailscale.
How was the initial setup?
I encountered difficulties mainly on Macs during the initial configuration or deployment of the tool in my clients' environments.
The main issues were on Macs that were not on the latest version and were causing problems, which were no longer supported. The management of permissions on Mac is also not entirely clear.
What was our ROI?
I have not seen a reduction in the number of employees needed, but I have seen time savings and slightly better security with Tailscale.
What's my experience with pricing, setup cost, and licensing?
Pricing is borne by the client, and it seems coherent compared to what Tailscale provides.
Which other solutions did I evaluate?
I evaluated the setup for clients or for my organization of VPNs hosted on VPS in the cloud, notably Vultr and others, but that required maintenance and skills. I favored the easy solution, which is Tailscale before choosing it.
What other advice do I have?
Tailscale can be deployed on-premises, in a private cloud, but never public in my organization.
That really depends on what the client is willing to pay. I can use anything and adapt to the client and their needs regarding the private cloud solution I am currently using.
Tailscale is a very good compromise, and you just have to assess whether it suits them and for which client. Tailscale can be installed on bare metal with Headscale, which is also an option.
I give this product a rating of seven on a scale from one to ten.
Secure remote homelab access has simplified multi-continent file transfers and daily management
What is our primary use case?
My main use case for Tailscale is for my homelab, where I have several services, including professional services. I use it to connect remotely from different places and access my services. I used to work from two different homes, where all the infrastructure was in the first home, but I was in the second home, so I was always connecting to the first home. I actually did that internationally, across two different continents, and it worked very well. The first use is to connect to the infrastructure, to be able to manage it, and to be able to administer it. I also used Wake on LAN for different devices through Tailscale network. That was a very good use case.
Additionally, since I have it, I use it on public networks when I want anonymity, for example, in an airport. I forward all the traffic from my mobile device through Tailscale network to the other home, and there I can have all my information encrypted in the airport.
I have many devices that use Tailscale, including many non-technical users who need to connect to the infrastructure to obtain certain files and make certain changes. Tailscale app, especially for iPhone, works very well. It is very easy to turn on and off, and it is very easy to do all the setup. Comparing it directly with WireGuard, with WireGuard, I have to create each of the peers and each of the configuration files for each of the devices. On top of that, for the server that I was using with Tailscale service, several peer files were needed because one redirected all the internet traffic and the other only to the services that were needed, depending on what I wanted to do at that time. I had to create two peers for each of the devices, and it was honestly a lot of hassle to manage. With Tailscale, it is really very easy to configure it, add the emails of all these people within the main console, and that allowed non-technical users to use the entire infrastructure by connecting, either forwarding all internet traffic through Tailscale or only forwarding the specific traffic of the services.
Another good thing about Tailscale is that since it runs on top of WireGuard, I really notice very few performance differences. The performance is quite good, and the stability as well, because I have used it to send many gigabytes of data over the internet, in fact, across continents, from one continent to another, using the entire Tailscale network. I used the SMB service to share files, and I am sometimes talking about transferring 50, 70, or 80 GB all through the VPN. It worked super well. Having firewall passthrough directly passes NAT passthrough. That is much easier to configure than configuring all the ports. Everything updates automatically, which is also very helpful. I actually have it with auto-update both on the server and on all users. That also greatly improves the overall experience. I haven't had any major problems, and the fact that anyone can use it is very good.
How has it helped my organization?
It is positive because in a very easy way all users can connect, they can see files, they can access certain services, and I can privately manage all the infrastructure while being on different continents.
What is most valuable?
I haven't used Tailscale in corporate terms, but I know it has many features that I am currently not using. The fact that the UI and UX are so good, that it works so well, that it is clear, and this Exit Node feature that can be activated in a very easy way, allowing me to access all the infrastructure, makes it very easy to use. That is a good advantage.
This allowed less technical users to use all my infrastructure, which before was more complicated. Before, I spent a lot of time setting up all the peers, and now I disabled all the peers I had in WireGuard and I rely simply on Tailscale. At most, I just add the Gmail accounts. Something very good they added is that before I wanted to have an account where I could log in with my own email in Tailscale, and I couldn't. I had to log in with Google and Gmail, which actually bothered me quite a bit. That was pretty bad because I don't use Gmail as my primary account. I have Gmail as a second or third account, but there was no provider for the email I used, which is ProtonMail. I know that now you can create an account. I've never done it and I kept the Gmail account that I only use for Tailscale and very few other things.
This is also worth mentioning because it provides simplicity and flexibility in user management, which is essential for less technically inclined individuals.
What needs improvement?
At the moment, I don't know because it's been working very well for me, and I haven't been managing it much lately. I still use it because I connect from different phones, but everything is already configured, and I simply use it as a tool. For my use case, it works perfectly.
One somewhat negative point that I see is that if you want to use Exit Node and that is installed on a device within the network, then you have a bit more latency because instead of the packets going from a mobile device to the router at the other home and from the router going out again to the internet, for example, now they have to enter the network, enter the device that has Tailscale, and only then go out. That sometimes adds about 3 milliseconds. This is crucial if you are sending many gigs. If there were a feature, it would be great if Tailscale could integrate with different providers in routers or commercial devices. They would have to negotiate, and I know it's not easy, but so that the router itself or a piece of equipment that is at the edge of a network could have Tailscale installed and run from there. With that, you can reduce a few milliseconds, and you also wouldn't be overloading the internal network or the switches at the other home. That is an important point to take into account.
For how long have I used the solution?
I have been using Tailscale for approximately two years.
What do I think about the stability of the solution?
I consider Tailscale to be stable.
What do I think about the scalability of the solution?
I cannot answer that because I don't have very scalable, very large environments. They are small environments.
Which solution did I use previously and why did I switch?
I used L2TP and OpenVPN before Tailscale, and then I started deploying Tailscale and WireGuard. At first, WireGuard was hard for me. It was difficult to install, and due to time, I didn't do it. I deployed it later and I still have it partially, but I primarily use Tailscale because it runs on top of WireGuard, it is more efficient than L2TP, and more efficient than OpenVPN, and installation is super easy.
How was the initial setup?
I experienced reduced technical effort and implementation time since using Tailscale.
What's my experience with pricing, setup cost, and licensing?
I have not had any problems with Tailscale's costs, initial setup, and licensing. I did not incur any costs and I stay entirely on the free tier. I don't think I had any licensing issues either. I haven't hit any limits yet, and I would have to check which features are paid, but for now, the free ones work very well for me.
Which other solutions did I evaluate?
When I learned about Tailscale, it was recommended to me, and I investigated it, saw that it was very good, and started using it.
What other advice do I have?
There are several or many minutes of time saved, especially with WireGuard and in management, and in the mental management, it also has an impact because having to manage so many peer files with WireGuard was a bit more complex. With Tailscale, it is honestly super easy. A friend had recommended it to me, so all of that is very good.
In fact, I did something very important, which is that I conducted a comparison study for my university thesis where I specifically compared four VPN services. I compared L2TP, OpenVPN, Tailscale, and WireGuard. The tests I did in the benchmark were on two different continents, in Europe and Latin America. I tested it with the transfer of a 500 MB file over the internet using the Windows SMB protocol, wanting to see the overhead between each of the different VPN services. Speaking of L2TP, it completed the transfer in 1 minute and 10 seconds. Then OpenVPN had a slightly better performance than L2TP with 1 minute and 7 seconds. Then comes Tailscale with 1 minute and 6 seconds and finally WireGuard, which was the fastest at 1 minute and 5 seconds. Although WireGuard technically won in speed, it is not worth that one second of difference in transfer time versus the fact that it is actually much faster to deploy the VPN and the infrastructure with Tailscale. I much prefer Tailscale over WireGuard for that reason.
I always recommend to others who are considering using Tailscale to go for it.
Tailscale Transformed My Workflow with Secure, Effortless Setup
Secure private agents have protected my APIs and now need better access tiers and licensing
What is our primary use case?
My main use case for Tailscale is to create a secure network between my applications so that I can use my agents within, from my Mac, to my phone, to my VPS, all of them connected through Tailscale.
I set up Tailscale by allowing SSH from my Mac to my VPS, where I have APIs hosted on the VPS, which each agent can access through Tailscale, allowing me to be off-grid and have only my agents access my API without worrying about hacking or prompt injection. This covers my main use case for Tailscale.
What is most valuable?
Tailscale's best features include the ability to seamlessly integrate and add devices, exit nodes, a very simple UI that is easy to set up, and importantly, access to a CLI so that my agents can set up Tailscale for me.
The simple UI helps me day-to-day because it is very easy for me as a non-technical person to set it up and ensure that it is there, allowing me to close off every other port in my VPS and allow only Tailscale. The CLI is very simple, enabling my AI agents to interact directly with Tailscale via the CLI, which allows me to use plain language as a non-technical person to set up Tailscale without needing technical knowledge, making it useful for my clients as well to sell them privacy.
Tailscale has positively impacted my organization by allowing me to have a scalable private setup, and ideally, it would be great to have some sort of licensing framework that we could sell Tailscale as part of our services. When I say it allowed me to scale privately, it has reduced my security concerns because it allows me to move faster.
What needs improvement?
I think Tailscale can improve by going towards more agent-facing interactions, such as adding a skill for agents to know how to use Tailscale, possibly incorporating MCPs, and generally allowing agents to interact with Tailscale in a simpler, faster way.
A main feature could be some sort of skill or MCP, along with all the necessary documentation for AI agents to tweak it. I choose a seven because it sells what it does honestly, but I believe some more flexibility might be needed. The UI currently offers a few options, but allowing tiers of access would be interesting, letting you create Tailscale tier one, tier two, and tier three with different read-write capabilities within those tiers, which would be really cool and could push it to a ten. The lack of licensing for commercial purposes also hinders it from being better.
For how long have I used the solution?
I have used Tailscale for about a year.
What do I think about the stability of the solution?
Tailscale is very stable.
What do I think about the scalability of the solution?
I have not tested Tailscale's scalability yet, so it is to be understood later.
Which solution did I use previously and why did I switch?
Before choosing Tailscale, I honestly did not evaluate other options, as I thought Tailscale was the leader in the market and a proven solution, making it an easy decision for me.
How was the initial setup?
I set up Tailscale by allowing SSH from my Mac to my VPS, where I have APIs hosted on the VPS, which each agent can access through Tailscale, allowing me to be off-grid and have only my agents access my API without worrying about hacking or prompt injection.
What was our ROI?
I have not seen a return on investment yet.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing leads me to believe that the licensing is quite restrictive.
What other advice do I have?
Tailscale is quite a straightforward product, best-in-class for security, making a lot of sense for network security, so I really recommend trying it out because it is really good. My review rating for Tailscale is seven.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure remote access has simplified my home lab and now routes all my mobile traffic through it
What is our primary use case?
My main use case for Tailscale is connecting me to my home lab, which serves as my front-end infrastructure, whereas I use ZeroTier for back-end infrastructure for connecting things such as IOT devices and personal servers.
A specific example of how I use Tailscale with my home lab is that it allows me to easily provide secure access from myself to my home lab while on the go. This does more than just connect me with my servers; it allows me to run all of my internet traffic on my devices while on the go through my router as the exit node, which allows me to use AdGuard as my DNS server and my home firewall. Overall, it makes me more secure on the go and prevents me from often having to use HTTPS on many of my personal services because Tailscale encrypts traffic already, making HTTPS sort of irrelevant in that specific use case.
What is most valuable?
The best features Tailscale offers are its encrypted tunnel and easy setup VPN, which are common across your space. I personally love two specific things that differentiate Tailscale: the automatic HTTPS setup, which means you don't have to deal with certificates or anything similar, and the ability to use exit nodes very easily, which is a super useful feature.
The automatic HTTPS setup and easy node management have helped me in my daily workflow because I have an automation on my iPhone that runs as soon as I disconnect from my home network, allowing me to tunnel my cellular data through Tailscale back to my home lab and run my router as an exit node. This means I can use AdGuard for my DNS to block anything from malware to ads in general. The HTTPS setup is super useful for another use case I had where I was building an AI German teacher for myself, allowing communication to happen because most browsers require HTTPS for such connections. Not having to set up certificates and simply using the Magic DNS URL with HTTPS on the Tailscale side was super time-saving and useful.
Tailscale positively impacts my organization because I can feel incredibly secure on the go without worrying about opening ports on any routers. It makes an incredible amount of sense for my use, and I wish I could use it more in my role at ADP, though they generally manage that externally through Cisco. But I give my sign-off to advertise to them.
What needs improvement?
The only improvement I see for Tailscale is that I would love to check out Headscale to fully host it on my own infrastructure. However, I think it is a really great product as is. It is easy to set up, and since it uses WireGuard on the back end, it is quite fast. I would love to see a diagram that gives me clearer visibility into how I connect to each node, as I often find I connect to non-direct routes to individual servers, and a visual representation of that would make it easier to visualize.
For how long have I used the solution?
I have been using Tailscale for about five years.
What do I think about the stability of the solution?
Tailscale is stable most of the time, as I occasionally see dropouts. However, I appreciate receiving notifications about drops, which I almost never notice myself. Occasionally, I see on my router that the exit node has gone dark, but I don't notice that in practice.
What do I think about the scalability of the solution?
Tailscale's scalability is very good, with the visibility and ability to access metrics making it easy to scale upward, although I have limited experience with that as I have under 100 devices, around 20.
How are customer service and support?
I have never had to use customer support because the product is that good.
Which solution did I use previously and why did I switch?
I previously used ZeroTier for my back-end services, and I think that is the number one one-to-one competitor within your space. I switched from ZeroTier to Tailscale for two reasons: it was much easier to set up Tailscale, and while ZeroTier still has value, Tailscale makes more sense for the speed, visibility, and overall functionality, especially with exit nodes being easier to use.
How was the initial setup?
Tailscale is incredibly easy to use, and I will always sing its praises. It has made my life a lot easier. I was originally an early adopter of ZeroTier and championed that for a long while. Only in the past couple of years have I switched over to Tailscale, and it has been world-changing, making many things easier to achieve the security I was looking for on the go.
What's my experience with pricing, setup cost, and licensing?
I generally work within a free tier, as there is no reason for me to step outside of that currently.
Tailscale has definitely made it so I don't have to incur additional costs. The ability to use your servers as relay servers instead of setting up my own Headscale server is the primary reason I haven't done so far, because it makes things easy and time-saving.
Which other solutions did I evaluate?
Before choosing Tailscale, I evaluated ZeroTier again. The only reason I haven't moved my entire infrastructure to Tailscale is cost. I can utilize free accounts on both Tailscale and ZeroTier, allowing me to build a back-end infrastructure for my family without paying for an entire organization account. ZeroTier operates on a device-based quota, while Tailscale uses an account-based quota.
What other advice do I have?
A specific example of how I use Tailscale with my home lab is that it allows me to easily provide secure access from myself to my home lab on the go. This does more than just connect me with my servers; it allows me to run all of my internet traffic on my devices on the go through my router as the exit node, which allows me to use AdGuard as my DNS server and my home firewall. Overall, it makes me more secure on the go and prevents me from often having to use HTTPS on many of my personal services because Tailscale encrypts traffic already, making HTTPS sort of irrelevant in that specific use case. I would rate this product a 10 out of 10.
Tailscale has completely simplified secure remote access to my home server, media library, and surveillance system.
What is our primary use case?
I use Tailscale to connect to my home server for various tasks, such as checking its status and streaming movies or series from my media server. I also use it to monitor my home surveillance system and collaborate on projects with friends.
Recently, when my server encountered an issue while I was away from home, Tailscale made it incredibly easy to connect remotely, diagnose the problem, and fix it.
Currently, I use Tailscale for a small group of three to five people, and it works flawlessly. It handles our current setup perfectly, though expanding the user limit on the free tier would be a fantastic improvement
What is most valuable?
One of Tailscale's most valuable attributes is its incredibly straightforward setup. The absolute best feature for me is that it completely eliminates the need for port forwarding on my router, which simplifies network management significantly. The platform is also highly stable; I have been using it for a while now, and it has worked flawlessly.
I have also relied heavily on Tailscale’s official documentation for advanced configurations. For instance, it helped me easily understand and set up Tailscale Funnel, which allows me to share local services over the internet securely without exposing unnecessary network data.
Additionally, when I needed to create specific access rules (ACLs) to restrict which ports my three devices could access, the documentation guided me seamlessly through the configuration. Overall, I am incredibly impressed with their documentation; it is exceptionally detailed, informative, and user-friendly.
What needs improvement?
I would love to see two specific improvements brought to the Tailscale Android client, both of which are standard in several other VPN applications:
- The app currently lacks the ability to automatically disable the VPN when connected to a specific, trusted network (like a home Wi-Fi network). Having an automated toggle for this would prevent local traffic and local DNS queries from unnecessarily routing through the tailnet when you are already home.
- The current split-tunneling feature only allows you to exclude apps from the VPN. Because of this exclusive-only design, every newly installed app on the device defaults to routing through Tailscale. Introducing an "include" mode, where users can select only a few specific apps to use the VPN while leaving the rest to use the regular internet, would be a massive quality-of-life upgrade.
For how long have I used the solution?
I have been using Tailscale for a little over a year.
What do I think about the stability of the solution?
Tailscale has been exceptionally stable. Throughout my entire time using the platform, I have personally experienced zero outages or downtime.
Because Tailscale orchestrates a peer-to-peer mesh network, my devices connect directly to one another. This architectural design provides massive peace of mind: once the initial connection is established, the data path doesn't rely on central infrastructure. Even if Tailscale's control plane faces minor maintenance or a brief degradation, my existing device links remain perfectly active and unaffected. For my home server, media streams, and surveillance setup, the reliability has been rock-solid.
How are customer service and support?
I have not had any direct interactions with Tailscale's technical support team. Because the product is so stable and the official documentation is incredibly detailed, I have been able to handle everything on my own without running into any issues that required escalation.
Which solution did I use previously and why did I switch?
Prior to adopting Tailscale, I was using a standard WireGuard setup over an IPv6 connection. However, because my home network sits behind Carrier-Grade NAT (CGNAT), I was entirely dependent on IPv6 to bypass it. This meant I couldn't access my VPN whenever I was on an external network that lacked IPv6 support—which, unfortunately, is still quite common. I ultimately switched to Tailscale because its native NAT traversal handles these environments seamlessly, providing the highly reliable, user-friendly, and maintenance-free alternative I needed.
How was the initial setup?
The initial setup is exceptionally straightforward. On my home server, I deploy Tailscale inside a Docker container using their publicly available templates, which makes it virtually a copy-paste deployment. For my client machines, the process is as simple as downloading the application, logging into my account, and letting the devices connect automatically. The entire onboarding experience is frictionless.
Which other solutions did I evaluate?
Before choosing Tailscale, I evaluated a few other mesh VPN options, most notably Netbird.
- Pros: Netbird is a very capable, open-source product with a great user interface and a solid architecture.
- Cons: In my testing, Netbird simply wasn't fast enough for my requirements. I noticed a distinct difference in throughput and connection establishment speeds compared to Tailscale.
Ultimately, Tailscale won out because it offered superior performance, lower latency, and a much more mature ecosystem for my specific routing needs.
What other advice do I have?
Secure access has protected critical servers and now simplifies private SSH and service sharing
What is our primary use case?
I use Tailscale to publish and as an SSH service. I secure my SSH port and then use Tailscale to SSH into my VPS. I also use Tailscale to serve private services on my VPS so my teammates can access them securely without exposing the port publicly.
Our VPS was attacked by a bot targeting our port 22 or SSH service. Our service is quite critical, so exposing it publicly would pose a danger to our services, especially our company's database. That is why I use Tailscale to secure all of our services.
I use Tailscale to secure our CI/CD pipeline as well. We do not use any SSH key anymore; we use Tailscale SSH instead. I can easily connect to a private VPS using Tailscale without needing to be there because Tailscale acts as a VPN.
What is most valuable?
The best features Tailscale offers that benefit me are the SSH services and VPN services, and how it can expose a service without publicly exposing the port or provide access control to which services are available to our teammates or made publicly available. Tailscale Serve and Tailscale SSH are the most useful features in my opinion.
We are able to share only a specific service with our teammates, which is basically a least privilege access. They will not be able to access the database, but they are able to access our monitoring log and other services.
What needs improvement?
The funnel is particularly handy. It is much similar to Cloudflare Tunnel, but it is from Tailscale. I would appreciate the ability for it to funnel many services from our VPS because as far as I know, it can only funnel one thing from our VPS, so one domain only. If you want more domains, you have to use a sidecar container, which is not quite convenient. If I were to request a feature from Tailscale, it would be to have a funnel that allows me to serve multiple services on our VPS.
Another feature I would request is a custom domain. I would like to customize my Tailscale domain other than funnel. Funnel lets you expose multiple services in your server and then you can customize the domain name for each of the services. Currently, I am only given the MagicDNS domain. If I could give Tailscale access to my DNS management, then Tailscale could customize that domain for our funnel services. I think that would be very helpful.
I am currently facing an issue where on my Mac, Tailscale does not allow me to log in to multiple accounts. It is quite hard to switch between accounts. I think that is quite critical and needs to be improved.
The desktop version on macOS does not allow me to switch between multiple accounts easily. It requires me to log in every time I want to switch accounts, and it actually creates another node for my laptop. Even though I have one laptop, it creates multiple nodes every time I switch accounts from A to B and B to A. When I switch back to my original account, it actually creates another node instead of reconnecting to the previously connected node.
For how long have I used the solution?
I have used Tailscale for about one and a half years.
What do I think about the stability of the solution?
Tailscale is very stable and I have not noticed any downtime so far.
What do I think about the scalability of the solution?
Currently, our organization is quite small, so I have not met any limits from Tailscale.
How are customer service and support?
I have not reached out to customer support because I have been able to solve everything myself and from the documentation, so I have not needed to contact customer service.
Which solution did I use previously and why did I switch?
I used fail2ban to block bots from brute-forcing our SSH service, but because it was not effective enough, I switched over to Tailscale.
How was the initial setup?
Installing Tailscale does save time in managing the firewalls because I do not need to know much about firewalls, especially UFW, as I can just install Tailscale and our server connects instantly. This saves a lot of our time.
Tailscale definitely saves me a lot of time securing our server. I do not really need to install fail2ban or CrowdSec or modify our UFW firewall. I can just install Tailscale, close many ports, and then share them with my teammates. It is really time-saving and, of course, money-saving because Tailscale's free tier is very generous.
What about the implementation team?
I have not reached out to customer support because I have been able to solve everything myself and from the documentation, so I have not needed to contact customer service.
What's my experience with pricing, setup cost, and licensing?
Tailscale is very generous with pricing. I have not met the limit at which I need to upgrade my tier, so I am currently on the free tier and I do not think I need to upgrade because the free tier is more than enough and it is very generous.
Which other solutions did I evaluate?
I went directly to Tailscale.
What other advice do I have?
It becomes much easier to share our services with our teammates without needing to handle the firewall directly. For security, it is indeed much safer now because we can close all of our ports and then just share the link to our machine with our teammates so they can access it using Tailscale VPN.
I would recommend trying Tailscale. Use the managed Tailscale service because its free tier is very generous, and then you can avoid modifying the firewall and completely migrate your entire infrastructure to using Tailscale VPN. I would rate this experience a 9 out of 10.
Secure access to home servers has transformed how I work with local models and client projects
What is our primary use case?
My main use case for Tailscale is the accessibility and simplicity that it offers me to access my servers from anywhere, as well as my local computer and local LLM models. I can access them from anywhere on the network. When I'm doing testing, developing, or handling sensitive data that I don't want to be in the cloud, I can always access my home setup and process the data as required. Additionally, when I was setting up my Kubernetes cluster, I considered Tailscale as a solution for the interconnectivity between the bare metal node and the Oracle virtual machines that I have, which are isolated.
Tailscale helps with accessing my local models and sensitive data due to the simplicity of setting up everything. Even for non-technical people, it's easier to set up. I have my setup with my phone, my laptop, and my servers connected. When I need to work with a client or as a consultant, if they are remote and don't have the technical capabilities to access their infrastructure network, it is as simple as that. I just send them a script showing how to install and what to click to join my Tailscale organization. Then I have access to their system easily.
Tailscale has made things easier for presenting, setting up, and sharing files. When I'm working on a project or building an application in React and want to present the UI, even though it's locally hosted, I can serve it on Tailscale and share the Tailscale link that is accessible from the public so the client can see the work in progress. It has also been useful to use the serve feature for sharing files. If I need to share a specific larger file, I would put it on a share and send the link to a friend or coworker so they can download the file. When the process is finished, I can simply stop the sharing.
What is most valuable?
My opinion about the best features Tailscale offers includes accessibility, simplicity, the file serve feature, and the ability to share internal routes. I can set up access to anything at home. Tailscale will advertise the routes inside the network so you can reach any part of the network without any issues, and it provides the control to isolate everything. I also see they have a new feature called lockout that I want to try.
Tailscale has positively impacted my organization with shorter time for setting up connections and improved accessibility. Even when a non-technical person needs help, I can assist them much faster than explaining the process to them.
What needs improvement?
I don't have any particular ideas or additions about the features. It was nice for the service discovery that I used in the cluster because you can connect and use auto service discovery, but I haven't implemented that much because the complexity of the networking that I have sometimes caused issues.
I haven't thought much about how Tailscale can be improved.
For how long have I used the solution?
I have been using Tailscale for something more than two years.
What do I think about the stability of the solution?
In my experience, Tailscale is stable.
What do I think about the scalability of the solution?
Tailscale's scalability is great.
How are customer service and support?
I find Tailscale's customer support to be good.
Which solution did I use previously and why did I switch?
I did not previously use a different solution.
What was our ROI?
I cannot provide input on whether I have seen a return on investment with Tailscale since I used the free version.
What's my experience with pricing, setup cost, and licensing?
I'm using the free version of Tailscale, so I didn't have any experience with the pricing.
Which other solutions did I evaluate?
Before choosing Tailscale, I evaluated other options by looking at Teleport but for a different solution. For networking mainly, I use WireGuard tunnels, which are peer-to-peer connection point-to-point.
What other advice do I have?
My advice to others looking into using Tailscale is to try it. It's simple to set up and simple to connect your applications from anywhere. I would rate this product an 8 out of 10.
Private branches and remote devices have become accessible and stay connected for daily operations
What is our primary use case?
I use Tailscale to share the branches in one network to make a site-to-site VPN. I have customers, and each customer has a server with too many branches. We need to access some devices that are not connected directly to the network, such as fingerprints that cannot have any firmware to install, for example, Tailscale agents. I need to connect the branch with the headquarter office and use Tailscale commands to reach the fingerprint through this VPN site-to-site.
This is the main purpose for using Tailscale until now, and I am searching for the other properties and features of Tailscale.
What is most valuable?
Tailscale is fast and easy to install. I can install Tailscale on any operating system, as it has a lot of OS versions and supports Linux, Mac, Android phones, Apple iOS, and Windows. This feature is suitable for my daily jobs and tasks.
Tailscale has a great interface that is friendly and acceptable. Tailscale fixed the problem with reaching devices such as fingerprints, and it is now the most preferred way to connect the site-to-site VPN when we have a customer with fingerprints.
Tailscale is good in troubleshooting, and it takes no time.
What needs improvement?
One of the most significant issues I faced is that in some countries, when I access my Tailscale account, it gives me more steps to verify and confirm, such as sending a message to my mobile and entering the code. I can see this is not helpful for the user experience compared to other alternatives.
Another issue is that when I use Tailscale with other alternatives such as Radmin and ZeroTier, it takes high priority and takes all the incoming connections, even if the other alternative has a different IP scope. It still takes the control and tends to cancel the other software as a VPN site-to-site.
Tailscale is stable, but sometimes with no more use, it sometimes needs to be activated again and again. For example, if I cannot connect or if the customer cannot connect to the network or use the tool, after one month, the customer gets lost or disconnected from the network and needs to verify again.
For how long have I used the solution?
About one year.
What do I think about the stability of the solution?
Tailscale is stable, but sometimes with no more use, it sometimes needs to be activated again and again. For example, if I cannot connect or if the customer cannot connect to the network or use the tool, after one month, the customer gets lost or disconnected from the network and needs to verify again.
What do I think about the scalability of the solution?
Tailscale is good, and I can add any number of branches I need until now.
How are customer service and support?
Tailscale customer support is good. I can contact them and receive a fast response.
Which solution did I use previously and why did I switch?
I still use other tools such as Radmin and ZeroTier. In previous years, I used to use Hamachi. They were good, but in some cases and some OS that does not support them, I switched to Tailscale.
What was our ROI?
Tailscale is a great solution that is fast, easy, and cheap.
What's my experience with pricing, setup cost, and licensing?
Tailscale is cheap regarding other alternative site-to-site VPN solutions.
Which other solutions did I evaluate?
I evaluated Radmin and ZeroTier, and they were good.
What other advice do I have?
Tailscale is good in performance, but with the previous issues I explained, I can give it just eight until it fixes these issues. I give Tailscale a rating of eight out of ten.
Secure remote access has protected my home services and simplified multi-device backups
What is our primary use case?
My main use case for Tailscale is to access my home network remotely. In my home network, I have deployed a wide range of microservices. For example, I use Tailscale to back up my pictures, and I need my phone to be synced to my remote server, which is why I use the VPN to create a tunnel and make that connection secure.
In addition to accessing images, I have a wide variety of devices connected through Tailscale, including my phone, a couple of computers, and a couple of PCs that I have set up. I also use it to monitor some statistics I have deployed in another microservice.
What is most valuable?
In my experience, the best features Tailscale offers are mainly the ease of use. It is easy to set up, easy to understand, and the documentation is good, which means if I want to connect a new device, I have no problem doing it.
The setup and device connection are easy for me primarily due to the user interface, which is clear and direct. The installation process and initial documentation are easy to understand and figure out, even if you have not worked with a similar product in the past. The fact that it is agnostic to the operating system allows me to use it on Linux, Windows, iOS, and on my Samsung phone, so I have no problem connecting any device that I want to.
Although I do not use it within my organization, Tailscale has positively impacted me by providing a private hosted server, with the main benefit being its built-in security and the ease of installation instead of needing to create HTTPS for my server. I prefer not to use HTTP over an open port, so I have more security when accessing my own private data.
Tailscale's security has helped me significantly, and part of the setup network-wise was implementing Tailscale. I have had no problems with any firewalls configuration, making it easy to track where the connections are coming from and easy to follow the stack trace of who is connecting and from where.
What needs improvement?
I have a pretty basic use of Tailscale. I do not deploy it for a big organization, so I am generally happy with the product itself and have no special requests for a different feature that I would like to be implemented.
I did find a bug during the setup, but it was a minor thing that I resolved pretty quickly. As I mentioned before, the documentation is straight and direct, even when deploying for the first time. To deploy it, I had to create a Docker container to which I deployed Tailscale because my operating system in my private network does not use a standard Linux distribution, and even that was easy, so not much I could say there.
For how long have I used the solution?
I have been using Tailscale for over the last year, mainly.
What do I think about the stability of the solution?
Tailscale is completely stable in my experience. I did the initial setup and have not needed to adjust it since. I have noticed on a more personal time metric that I have saved a lot of time, as it is an easy product and a convenient one. On a more professional note, I have not really deployed it for my organization yet, so I do not have metrics at hand to check.
What do I think about the scalability of the solution?
I think Tailscale's scalability would handle adding more devices or expanding usage without a problem. I have not had any issues, and it is really easy to add devices to the network. I have about ten connections right now, which is few, but I am quite sure that the process of adding new networks and adding new devices to the network would not carry out any significant problems.
How was the initial setup?
The setup and device connection are easy for me primarily due to the user interface, which is clear and direct. The installation process and initial documentation are easy to understand and figure out, even if you have not worked with a similar product in the past. The fact that it is agnostic to the operating system allows me to use it on Linux, Windows, iOS, and on my Samsung phone, so I have no problem connecting any device that I want to.
What's my experience with pricing, setup cost, and licensing?
As I deploy Tailscale on my on-premise home network, I do not have any pricing costs, licensing, and setup issues.
Which other solutions did I evaluate?
I did look around at different options just as a first research before choosing Tailscale, but I do not remember the name of the competitors. I think Tailscale was widely recommended, so I directly went with it.
What other advice do I have?
I rate Tailscale overall a ten out of ten.
I chose ten out of ten because the ease of installation, access to documentation, friendly UI, ease of tracking and debugging, and the facility I have to add new devices to the network all stand out. I have recommended Tailscale to my friends to use, and they have implemented it in their own servers. They are less technical than me, so I feel it is a good product and an easy product to understand.
I would tell others looking into using Tailscale to read the documentation and implement it for their own use case because it is pretty easy to set up and understand.
I really appreciate the monthly updates that Tailscale sends about what is changing. I do not understand the full technical details, but it is good to keep an eye out for it and read them, as well as read the newsletter over. My overall rating for this review is ten out of ten.