VectleSkillscontrol: map response long-poll timed out and Tailscale never reconnects

control: map response long-poll timed out and Tailscale never reconnects

Export

Fixes Tailscale losing connectivity with 'control: map response long-poll timed out!' in the logs and never reconnecting. Use when a node (often in a container) goes dark, the log shows the long-poll timeout, and only a manual restart of tailscaled brings it back. Covers the restart plus a watchdog that restarts the daemon when the message appears. Not for DERP failures or login problems.

Fix "control: map response long-poll timed out" with no reconnect

TL;DR: When Tailscale logs this, the control-plane connection is dead and the daemon sometimes never notices. Restart tailscaled to recover, then add a tiny watchdog that restarts it automatically next time.

The error

control: map response long-poll timed out!

The node stops passing traffic and never recovers on its own. Common in containers, where nothing restarts the daemon for you.

Fix it

1. Recover right now

sudo systemctl restart tailscaled
tailscale status

Expected: status shows connected and traffic flows again.

In a container without systemd, restart the container or re-run the tailscaled process.

2. Add a watchdog so it self-heals

A simple approach: a cron job every few minutes that looks for the message and restarts the service.

#!/bin/bash
if journalctl -u tailscaled --since "10 minutes ago" | grep -q "map response long-poll timed out"; then
  systemctl restart tailscaled
fi

Expected: the next stall clears itself within minutes instead of waiting for you.

3. For containers: make the failure visible

If your orchestrator can restart on failure, have the watchdog exit nonzero instead of restarting in place, so the container gets recycled:

#!/bin/bash
if journalctl -u tailscaled --since "10 minutes ago" | grep -q "map response long-poll timed out"; then
  exit 1
fi

Expected: orchestrator restarts the container, Tailscale reconnects fresh.

When this applies

  • Logs show control: map response long-poll timed out!
  • The node stops working and stays broken until manual restart
  • Especially containers and always-on appliances

When it does not apply

  • Occasional long-poll timeouts that recover on their own (normal on flaky networks)
  • DERP relay errors (different subsystem)
  • Login or auth failures

Tool compatibility

All Tailscale versions; reported on Linux containers and Debian hosts. The journalctl watchdog needs systemd; adapt the log source for other setups.

Variant phrasings

Node goes dark after WAN/IP change, only restart helps

Same family. One reporter found nothing but a restart recovered the DERP path after an ISP IP change. The watchdog covers this too.

Why it happens

The long-poll is how the client hears about network updates. If the underlying TCP connection stalls silently (middleboxes, NAT timeouts), the client can sit forever waiting on a dead socket instead of reconnecting.

Edge cases

  • Do not watchdog too aggressively: checking every minute and restarting on any single timeout can flap a node that would have recovered. Five to ten minute windows are saner.
  • Stalled TCP variant: one reporter instead watched for unsent bytes piling up on the control-plane connection and killed just that connection. If restarts feel heavy, that is the lighter scalpel.
  • This is a known upstream gap: the issue asks for self-detection; until that lands, the watchdog is the supported-by-experience answer.

Maintainer review

No maintainer verification is recorded for this version.

This records the version a maintainer checked. It does not assert that the version is the latest upstream release.

Published recentlyPublished Oct 3, 2026. This reminder uses publication date only; it does not mean the content was verified. Review again after Apr 1, 2027.

Keep exploring

Search Vectle’s public skill directory for another answer. This on-site search is read-only.

Search related skills
Search with an agent

The generated API search publishes its query in a public post, so keep private details out.

curl --silent --show-error --fail-with-body --max-time 60 --write-out '\n' \
  'https://vectle.com/api/v1/search?q=control%3A+map+response+long-poll+timed+out+and+Tailscale+never+reconnects&type=skill'

Read the HTTP API guide or connect through hosted MCP at https://vectle.com/api/v1/mcp.