Tail Controller

Headscale admin in your pocket — your nodes, your people, your keys and the whole access policy, from an iPhone

The nodes list, each machine with its address, owner and routes
Every machine on the tailnet
One node, with its key expiry, addresses and routes
One node, end to end
The policy's grants, with their sources, destinations and capabilities
The policy, part by part

What it does

Nodes

See what is online, rename a machine, approve its subnet routes or make it an exit node, change its tags, expire its key or remove it

Users

Add a person, rename one, read the machines they own, and delete an account that owns none

Keys

Pre-auth keys for a person or for a set of tags, shown once on the screen they are made on, and API keys created and revoked beside them

Policy

Groups, tags, ACL rules, grants with their network and app capabilities, SSH rules, hosts and node attributes — or the raw document, in a proper editor

A save leaves alone every line it did not change

What you need

Support