Codex lead Tibo said on day 3 (encore) of OpenAI's ship weeks that Codex Cloud was silently re-shipped. Official cloud-environment docs now let an environment join a tailnet via Advanced > VPN (Tailscale is the only supported provider), so cloud tasks can reach private HTTP/HTTPS services, with IPv4 subnet routes, MagicDNS and split DNS; Enterprise workspaces can request OIDC for short-lived cloud credentials. Tailscale says it had no idea and published hardening advice such as tagging agent nodes tag:codex.
Key Takeaways
- ✓Traction: Tibo's re-ship post hit 2,300+ likes and ~179K views in ~1.5h; Tailscale's announcement has 3,900+ likes and 2,100+ bookmarks
- ✓Setup: Advanced > VPN > Tailscale with an auth key marked both Reusable and Ephemeral so task VMs join and are cleaned up automatically (docs)
- ✓Scope: HTTP/HTTPS only, private IPv4 subnet routes supported; destinations must be allowed in both Tailscale ACLs and the environment's internet-access policy
- ✓DNS: docs now list MagicDNS and split DNS support, while Tailscale's Oct 6 post said they did not work, so the re-ship changed behavior (Tailscale blog)
- ✓Identity: Enterprise can request OIDC so tasks get short-lived cloud credentials scoped to that identity, not the user's own permissions
Key Decision Metrics at a Glance
Turn your technical choice into a development budget
Compare 40 dev plans & simulate token costs vs $20/mo subscriptions
Project Links & Resources
Direct AccessIn-Depth Technical Analysis
Cloud coding agents usually fail on reach, not code: internal APIs, private registries and staging live on the corporate network while task VMs run in a public cloud. On Oct 8 Codex lead Tibo said Codex Cloud was silently re-shipped, quoting Tailscale's announcement. Per OpenAI's cloud-environment docs, Advanced > VPN accepts Tailscale (the only supported provider for now) with an auth key marked Reusable and Ephemeral, so each task VM joins the tailnet and is removed after it goes offline. Traffic is HTTP/HTTPS only, private IPv4 subnet routes work, and the docs now list MagicDNS and split DNS support, which Tailscale's Oct 6 post said was missing. Destinations must be allowed in both Tailscale access rules and the environment's internet-access policy. Enterprise workspaces can request OIDC so tasks obtain short-lived cloud credentials scoped to that identity. Tailscale says there was no partnership: OpenAI built it on the public product. No new benchmarks were published. Recommended hardening: tag Codex nodes (tag:codex), scope access with grants, keep key expiry, and enable device approval instead of a default allow-all ACL.
Benchmark side-by-side against alternatives, or calculate monthly token cost vs subscription break-even.
Discussion & Comments
0Sign in to join the discussion
Connect with AI developers to exchange benchmark insights.