Normal view

A better way to manage privileged access

💾

Tailscale PAM is now available in beta, bringing privileged access management directly into Tailscale.

In this Summer Update, Alex takes a first look at Tailscale PAM: what it is, the problems it’s designed to solve, and how to get started. We’ll set up a PAM connector, add a PostgreSQL database as a service, connect through the Tailscale client and browser, and finish by accessing a Windows machine with Remote Desktop directly from the browser.

Tailscale PAM provides granular, identity-aware access to infrastructure while managing credentials behind the scenes. Admins can also audit access with logs and session playback.

Tailscale PAM beta is free for up to six users.

Join the Tailscale PAM beta:
https://tailscale.com/pam-selfserve-waitlist

Learn more about Tailscale PAM:
https://tailscale.com/docs/privileged-access-management/what-is-tailscale-pam


In this video:
00:00 Tailscale PAM is here
00:31 What is privileged access management?
00:53 What problems does PAM solve?
01:27 PAM vs network access policies
01:58 What’s included in the beta
02:36 Why Tailscale PAM uses connectors
02:58 Setting up Tailscale PAM
03:47 Adding a PAM connector
04:59 Adding a PostgreSQL service
06:40 Connecting to a database with PAM
07:24 Connecting through your browser
07:53 Remote Desktop with Tailscale PAM
09:10 Final thoughts
❌