docs: note the audit-log shutdown lasts until tailscale up

Clients that opt out of logging themselves hit it whatever logtail.enabled says.
This commit is contained in:
Kristoffer Dalby
2026-09-30 16:40:22 +00:00
committed by Kristoffer Dalby
parent da6c8f9dd3
commit 29e18d80b4
+2 -1
View File
@@ -208,7 +208,8 @@ applied by a client once it successfully connected with Headscale. See the confi
Do not grant the `https://tailscale.com/cap/data-plane-audit-logs` node attribute while `logtail.enabled` is `false`. A
client with log submission disabled treats this attribute as "the tailnet requires logging" and turns itself off, as
`tailscale down` would.
`tailscale down` would. It stays off until the attribute is removed and `tailscale up` is run. A client started with
`TS_NO_LOGS_NO_SUPPORT=true` or `--no-logs-no-support` reacts the same way, whatever `logtail.enabled` says.
Alternatively, logging can also be disabled on the client side. This is independent of Headscale and opting out of
client logging disables log submission early during client startup. The configuration is operating system specific and