Site-to-Site Networking
Securely connect internal resources
Add cross-cloud/infra environments, nodes, and subnets like production servers and databases to your Tailscale network — to securely transfer data between them.
Transfer data between nodes in your tailnet
Tailscale lets you give apps, IDEs, subnet routers, and other nodes in your tailnet secure access to any other resource in your network without exposing that resource to the public. Site-to-site networking lets DevOps connect the infrastructure their team relies on, to securely transfer data between resources such as web applications and databases.
Site-to-site networking lets you
Connect resources
Manage access
Transfer data
Get started with the features that matter most to you
Auth keys
Add new nodes to your tailnet without signing in again, with pre-authenticated auth keys.
Access control lists (ACLs)
Enforce granular access control policies (ACLs) as code, and programmatically manage your policy file with GitOps.
Remote dev environments
Native support for remote code environments like Coder and CodeSandbox
End-to-end encryption
Traffic between nodes is end-to-end encrypted via WireGuard®
Subnet router
Designate a subnet router to access large scale VPCs or devices and environments where you aren't able to run Tailscale.
Tailnet lock
Verify that no nodes are added without first being approved by a trusted node in your tailnet, with Tailnet lock.