Tailscale

Zero-config mesh VPN built on WireGuard — securely connect your devices without port forwarding or firewall changes.
| Tag |
Description |
Best For |
latest / pkg |
FreeBSD Quarterly. Uses stable, tested packages. |
Most users. Matches Linux Docker behavior. |
pkg-latest |
FreeBSD Latest. Rolling package updates. |
Newest FreeBSD packages. |
Podman on FreeBSD currently requires root. All commands must be run as root (or via doas/sudo). |
|
|
Before deploying, ensure your host environment is ready. See the Quick Start Guide for host setup instructions.
Deployment
Interactive Configuration
Parameters
Environment Variables
| Variable |
Default |
Description |
TS_AUTHKEY |
tskey-auth-xxxx |
Optional: Tailscale Auth Key for automatic login |
TS_EXTRA_ARGS |
--advertise-exit-node |
Optional: Additional arguments for tailscale up |
Volumes
| Path |
Description |
/config |
State directory (tailscaled.state) |
Implementation Details
- Architectures: amd64
- User:
root (UID/GID set via PUID/PGID). Defaults to 1000:1000.
- Base: Built on
ghcr.io/daemonless/base (FreeBSD 15.0).
Need help? Join our Discord community.