The easiest, most secure way to use WireGuard and 2FA.
Go to file
Brad Fitzpatrick 5bcac4eaac net/tshttpproxy: add GetProxyForURL negative cache
Otherwise when PAC server is down, we log, and each log entry is a new
HTTP request (from logtail) and a new GetProxyForURL call, which again
logs, non-stop. This is also nicer to the WinHTTP service.

Then also hook up link change notifications to the cache to reset it
if there's a chance the network might work sooner.
2020-09-21 14:05:28 -07:00
.github Add depaware.txt files and GitHub checks. (#745) 2020-09-09 12:11:46 -07:00
atomicfile atomicfile: don't Chmod on windows 2020-07-15 12:31:40 -07:00
cmd ipn: remove DisableDERP pref 2020-09-18 07:44:01 -07:00
control/controlclient tailcfg: add MapRequest.ReadOnly and OmitPeers; remove DebugForceDisco 2020-09-17 12:07:49 -07:00
derp tshttp, derphttp: send Proxy-Authorization, not Authorization, to proxies 2020-08-28 21:01:00 -07:00
disco wgengine/magicsock: run test DERP in mode where only disco packets allowed 2020-07-16 12:58:35 -07:00
internal Add tooldeps package to keep depaware pinned in go.mod. 2020-09-09 12:13:30 -07:00
ipn ipn: remove DisableDERP pref 2020-09-18 07:44:01 -07:00
log/logheap log/logheap: properly document LogHeap as performing HTTP upload (#741) 2020-09-07 19:17:53 -07:00
logpolicy tshttpproxy, controlclient, derphttp, logpolicy: send Negotiate auth to proxies 2020-08-26 20:08:05 -07:00
logtail backoff: update to Go style, document a bit, make 30s explicit 2020-08-09 09:36:26 -07:00
metrics metrics: add LabelMap.GetFloat 2020-07-19 12:31:12 -07:00
net net/tshttpproxy: add GetProxyForURL negative cache 2020-09-21 14:05:28 -07:00
paths paths, cmd/tailscaled: on Windows, don't try to migrate from legacy relay.conf 2020-07-13 08:59:54 -07:00
portlist portlist: reduce log spam on macOS 2020-09-02 15:44:55 -07:00
safesocket safesocket: gofmt 2020-07-20 14:40:19 -07:00
scripts scripts: don't descend into .git for license header check 2020-09-10 09:23:33 -07:00
smallzstd smallzstd: new package that constructs zstd small encoders/decoders. 2020-07-02 16:13:06 -07:00
syncs syncs: add Watch, for monitoring mutex contention 2020-09-11 11:36:07 -07:00
tailcfg tailcfg: add MachineKey.IsZero 2020-09-21 12:19:59 -07:00
tempfork tempfork: add lite fork of net/http/pprof w/o html/template or reflect 2020-07-21 16:17:03 -07:00
tsconst net/netns: add windows support. 2020-09-14 16:28:49 -07:00
tstest tstest: don't log on success 2020-09-08 15:18:36 -07:00
tstime tstime: hand-implement parseInt for specific needs of rfc3339 parsing. 2020-04-14 12:36:55 -07:00
tsweb tsweb: when unwrapping HTTPError, record the user-facing message also in the log 2020-09-17 10:12:48 -04:00
types types/key: restore Curve25519 clamping in NewPrivate 2020-08-20 14:25:28 -07:00
util util/pidowner: add missing copyright header 2020-09-11 08:57:10 -07:00
version wgengine, wgengine/router, cmd/tailscale: force netfilter mode off on Synology 2020-09-11 13:12:40 -07:00
wgengine net/tshttpproxy: add GetProxyForURL negative cache 2020-09-21 14:05:28 -07:00
.gitattributes .gitattributes: add a smudge filter for go.mod. 2020-02-19 20:02:02 -05:00
.gitignore cmd/relaynode: drop local --acl-file in favour of central packet filter. 2020-02-20 00:15:43 -05:00
AUTHORS Move Linux client & common packages into a public repo. 2020-02-09 09:32:57 -08:00
CODE_OF_CONDUCT.md Add a code of conduct. 2020-02-10 22:16:30 -08:00
Dockerfile Dockerfile: install iproute2 in the container image. 2020-05-10 17:12:17 -07:00
go.mod wgengine/router: restore /etc/resolv.conf after tailscale down is called 2020-09-17 16:40:22 -04:00
go.sum wgengine/router: restore /etc/resolv.conf after tailscale down is called 2020-09-17 16:40:22 -04:00
LICENSE Move Linux client & common packages into a public repo. 2020-02-09 09:32:57 -08:00
Makefile Makefile: remove tsshd from depaware 2020-09-11 11:09:32 -07:00
PATENTS Move Linux client & common packages into a public repo. 2020-02-09 09:32:57 -08:00
README.md Switch to Go 1.15. 2020-08-18 15:48:30 -07:00
SECURITY.md Add a SECURITY.md for vulnerability reports. 2020-02-11 10:26:41 -08:00

Tailscale

https://tailscale.com

Private WireGuard® networks made easy

Overview

This repository contains all the open source Tailscale client code and the tailscaled daemon and tailscale CLI tool. The tailscaled daemon runs primarily on Linux; it also works to varying degrees on FreeBSD, OpenBSD, Darwin, and Windows.

The Android app is at https://github.com/tailscale/tailscale-android

Using

We serve packages for a variety of distros at https://pkgs.tailscale.com .

Other clients

The macOS, iOS, and Windows clients use the code in this repository but additionally include small GUI wrappers that are not open source.

Building

go install tailscale.com/cmd/tailscale{,d}

We only guarantee to support the latest Go release and any Go beta or release candidate builds (currently Go 1.15) in module mode. It might work in earlier Go versions or in GOPATH mode, but we're making no effort to keep those working.

Bugs

Please file any issues about this code or the hosted service on the issue tracker.

Contributing

PRs welcome! But please file bugs. Commit messages should reference bugs.

We require Developer Certificate of Origin Signed-off-by lines in commits.

About Us

We are apenwarr, bradfitz, crawshaw, danderson, dfcarney, josharian from Tailscale Inc. You can learn more about us from our website.

WireGuard is a registered trademark of Jason A. Donenfeld.