[Feature] Posture check #963

Closed
opened 2025-12-29 02:26:46 +01:00 by adam · 3 comments
Owner

Originally created by @Blason on GitHub (Mar 2, 2025).

Use case

Being a ZTNA solution it is very much needed to have a posture check so that only designated people can connect to the solution

Description

Tailscale agent will perform certain checks based on a configuration done on headscale and if the requirements are met then only connection will go through else may be user will be diverted to policy page

Contribution

  • I can write the design doc for this feature
  • I can contribute this feature

How can it be implemented?

May be configuration parameter at headscale which would allow to configure certain posture checks lik

if

  • File is present
  • Asset is part of Domain
  • If AVs are present
  • If Windows build is specific
  • If certain process is running
  • If certain registry is present
Originally created by @Blason on GitHub (Mar 2, 2025). ### Use case Being a ZTNA solution it is very much needed to have a posture check so that only designated people can connect to the solution ### Description Tailscale agent will perform certain checks based on a configuration done on headscale and if the requirements are met then only connection will go through else may be user will be diverted to policy page ### Contribution - [ ] I can write the design doc for this feature - [ ] I can contribute this feature ### How can it be implemented? May be configuration parameter at headscale which would allow to configure certain posture checks lik if - File is present - Asset is part of Domain - If AVs are present - If Windows build is specific - If certain process is running - If certain registry is present
adam added the enhancementstale labels 2025-12-29 02:26:46 +01:00
adam closed this issue 2025-12-29 02:26:46 +01:00
Author
Owner

@kradalby commented on GitHub (Mar 2, 2025):

Hi

Being a ZTNA solution it is very much needed to have a posture check so that only designated people can connect to the solution

Headscale is not really a ZTNA solution, it is a simple version of Tailscale's SaaS for home labbers and self hosters. This is quite an undertaking and I dont think it is realistic that we will implement this, time and manpower wise.

Tailscale agent will perform certain checks

This agent does not support it, and it is out of our control as we dont develop the client.

@kradalby commented on GitHub (Mar 2, 2025): Hi > Being a ZTNA solution it is very much needed to have a posture check so that only designated people can connect to the solution Headscale is not really a ZTNA solution, it is a simple version of Tailscale's SaaS for home labbers and self hosters. This is quite an undertaking and I dont think it is realistic that we will implement this, time and manpower wise. > Tailscale agent will perform certain checks This agent does not support it, and it is out of our control as we dont develop the client.
Author
Owner

@github-actions[bot] commented on GitHub (Jun 1, 2025):

This issue is stale because it has been open for 90 days with no activity.

@github-actions[bot] commented on GitHub (Jun 1, 2025): This issue is stale because it has been open for 90 days with no activity.
Author
Owner

@github-actions[bot] commented on GitHub (Jun 9, 2025):

This issue was closed because it has been inactive for 14 days since being marked as stale.

@github-actions[bot] commented on GitHub (Jun 9, 2025): This issue was closed because it has been inactive for 14 days since being marked as stale.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/headscale#963