Attending AWS re:Invent?Where to find us
Get started
Login
WireGuard is a registered trademark of Jason A. Donenfeld.
© 2024 Tailscale Inc. All rights reserved. Tailscale is a registered trademark of Tailscale Inc.

Secure SaaS

Simplified SaaS security for the modern enterprise

SaaS apps connected via Tailscale App connector, refusing connections from any non-allowlisted IP address

Trusted by 9,000+ companies like these

Easily route and control your critical traffic

Route traffic to commonly used SaaS applications, such as GitHub, Stripe or Salesforce

Various geometric shapes moving along paths which connect to the Linear, GitHub and Stripe logos.
Users connecting to internal services with dynamic IPs via Tailscale's app connector

For internal applications with dynamic IP addresses, use Tailscale App Connectors to route secure and reliable connections.

Route traffic to pods and services within distributed Kubernetes clusters. Click here to learn more about Tailscale's Kubernetes Operator.

Various kubernetes deployments spread across the world on several different cloud providers like Google Kubernetes Engine and Amazon Elastic Kubernetes Service.

Continuous device protection

Product UI showing how to add device posture integrations, devices meeting and not meeting posture requirements, and a terminal window showing access to resources for approved devices only.

Require devices to be approved by an administrator before joining the your Tailscale network

Collect device attributes and use them as part of connectivity rules within your Tailnet to limit access for devices that do not meet security requirements.

Verify user identities and device postures to authorize only compliant devices.


Simplified access control

ACLs code editor on the left, with a diagram of different users connecting to resources, with access limited by groups and tags.

Enforce least-privilege access by defining granular ACLs for secure access.

Lock icon

Create RBAC policies to determine which users, roles, or groups can access, which nodes on your Tailnet.

Box with checkmark icon

Verify ACLs provide sufficient coverage against unnecessary exposure.

Git branch icon

Manage ACLs version control within CI/CD workflow using GitHub or GitLab.

Shield with checkmark icon

A predetermined trusted node must verify the trusted keys of any nodes attempting to join your Tailnet.


Fine-grained control for compliance

In image of a stylized UI, showing activity graphs, and a list of logged activity

Gain visibility into user actions and network interactions for better compliance.


Enterprise scalability and ease of use

Diagram showing regional routing and HA failover

Increase performance with high availability across complex networks with regional routing, and regional balancing.

Build a private network to give your teams secure remote access to internal apps.

Users across North America connecting to various SaaS app icons via a Tailscale App connector icon
A logo grid showing the preconfigured apps currently available, the list of logos is; Jira, Confluence, Stripe, Salesforce, Github, Google Workspace, and Okta

Choose a preconfigured app from the Tailscale app catalog. Your Tailscale network will add the app's domain and route information automatically.


Features

User icon with a checkmark

Users can authenticate using one of our supported identity providers to access the Tailnet.

Link icon

Sync users and group settings from one of our supported IdPs to keep ACLs up-to-date.

Lightning bolt icon

Partner integrations allow administrators to provide time-bound, elevated privileges for users.

Pricing that works for everyone

Personal

For individuals who want to securely connect personal devices, for free.

$0per active user/month
Get started free
Starter

For teams or organizations looking for an easy-to-use, secure, legacy VPN replacement.

$6per active user/month
Get started free
Premium

For companies who need service and resource level authentication and access control.

$18per active user/month
Get started free
Enterprise

For companies who need advanced integrations, compliance and support for access control at scale.