July 29, 2024

#company, product

Axiom + Tailscale: Elevate your network visibility and security


Blog Screenshot
Author
Dominic Chapman

Head of Product

In today’s interconnected world, maintaining robust network security and efficiency is important for businesses of all sizes, and especially true for enterprise organizations managing complex, distributed networks across multiple locations and cloud environments. At Axiom, we’re dedicated to equipping businesses with solutions for network security, log management, and data analysis.

That’s why we’re excited to announce our integration with Tailscale, a leader in secure networking solutions. This partnership allows Tailscale customers to stream their audit and network flow logs directly to Axiom seamlessly, unlocking powerful insights and analysis. Whether you’re conducting a security audit, optimizing performance, or ensuring compliance, Axiom’s Tailnet dashboard equips you with the tools to maintain a secure and efficient network, respond quickly to potential issues and make informed decisions about your network configuration and usage.

Introducing Tailscale

If you’re not familiar with Tailscale it’s like a VPN, but without the traditional headaches of configuration and management. It’s a game-changer in the world of secure networking. Tailscale allows you to easily create and manage a private network—called a tailnet—using the WireGuard protocol. With Tailscale you can securely connect your devices, no matter where they are in the world.

The power of Axiom + Tailscale

Integrating Tailscale with Axiom enhances your network visibility, security, and compliance capabilities. Here’s what you gain:

  1. Extended log retention: Keep your Tailscale logs for months or even years, crucial for identifying slow-developing security threats and meeting stringent compliance requirements.
  2. Comprehensive visibility: Stream both audit and network flow logs to Axiom for a 360-degree view of your tailnetʻs activity. Our purpose-built dashboard provides instant insights into your network’s health and usage patterns.
  3. Deep analysis capabilities: Use Axiom’s powerful query language (APL) to investigate specific events, track user activities, or analyze traffic patterns over time. From broad overviews to granular details, APL handles it all intuitively.
  4. Flexible data routing: Easily send specific log data to other tools in your stack. Use Axiom as your central log repository while feeding data to specialized tools as needed with Axiom Flow.

This integration empowers you to maintain a secure, efficient tailnet while providing the flexibility to adapt to your organization’s evolving needs.

Empowering every team with network insights

For a fast-growing company using Tailscale to manage a distributed team’s network access, here’s how Axiom enhances your operations across different teams:

  1. Security: Set up alerts for suspicious patterns like unusual traffic spikes or repeated failed access attempts. When detected, quickly investigate the full context using Axiomʻs powerful query language.
  2. Compliance: Easily meet requirements to retain access logs for extended periods. Generate specific reports for auditors using APL queries.
  3. Cost control: Use Axiom as your central, cost-effective log repository. Route only critical events to specialized tools like your SIEM, significantly reducing overall observability costs.
  4. DevOps: Monitor network performance and usage patterns to identify bottlenecks and optimize infrastructure.

Tailscale integration dashboard: Your network at a glance

The Axiom Tailscale dashboard provided with integration delivers immediate, actionable insights into your tailnet's activity and health. This comprehensive overview includes:

  1. Log type distribution: Understand the balance between configuration audit logs and network flow logs over time.
  2. Top actions and hosts: Identify the most common network actions and most active devices.
  3. Traffic visualization: View physical, virtual, and exit traffic patterns for both sources and destinations.
  4. User activity tracking: Monitor actions by user display name, email, and ID for security audits and compliance.
  5. Configuration log stream: Access a detailed audit trail of all configuration changes.

With these insights, you can:

  • Quickly identify unusual network activity or traffic patterns.
  • Track configuration changes and user actions.
  • Monitor overall network health and performance.
  • Investigate specific events or users as needed.
  • Understand traffic distribution across your tailnet.

Get started today

Enhancing your Tailscale network with Axiom is straightforward:

  1. Sign up for an Axiom account.
  2. In your Tailscale admin console, navigate to log streaming settings.
  3. Select Axiom as your log destination and follow the configuration steps.
  4. Once data flows, Axiom will automatically provide your pre-built Tailscale dashboard.

Within minutes you’ll have access to comprehensive insights about your tailnet, allowing you to set up custom alerts, perform detailed analyses, and route events as needed.

Ready to take control of your network data? Start streaming your Tailscale audit and network flow logs to Axiom today. We’re eager to see how youʻll use these new capabilities, and we welcome your feedback as we continue to evolve this integration.

Share
Get started with Axiom

Learn how to start ingesting, streaming, and
querying data into Axiom in less than 10 minutes.