What is Border0?

Last validated:
This topic is deprecated.

Border0 is becoming Tailscale PAM. For more information, refer to What is Tailscale PAM?.

Organizations struggle to answer two questions about their modern infrastructure: Who has access to what? and What did they do? Traditional Privileged Access Management (PAM) solutions tried to solve this with credential vaulting, password rotation, and activity recording. Modern infrastructure makes that model increasingly untenable: cloud, Kubernetes, databases, ephemeral developer environments, AI agents, and CI/CD all create privileged pathways that are not just "admin passwords in a vault".

Border0 + Tailscale is a next-generation PAM solution that provides application-aware access to your critical resources in your Tailscale network (known as a tailnet). It provides secure access to Linux servers, databases, Kubernetes clusters, and more. Border0 eliminates the risks of shared and static credentials. It governs privileged sessions at the moment access happens, with complete session auditing and session recording, where applicable.

Border0 + Tailscale uses the same identity layer and underlying WireGuard encryption protocol as Tailscale, because it is built on the Tailscale platform. You don't need to add new identity providers or passwords to manage privileged pathways to resources in your tailnet.