Pomerium is an identity and context-aware access proxy.
Find a file
github-actions[bot] 02fb31ce0c
deps: bump envoy to 1.17.2 (#2113) (#2114)
Co-authored-by: Travis Groth <travisgroth@users.noreply.github.com>
2021-04-22 10:33:42 -04:00
.devcontainer docs: replace httpbin with verify (#1702) 2020-12-22 09:53:08 -08:00
.github deployment: update get-envoy script and release hooks (#2111) (#2112) 2021-04-21 20:03:37 +00:00
.vscode config related metrics (#2065) 2021-04-07 12:29:36 -07:00
authenticate crypto: use actual bytes of shared secret, not the base64 encoded representation (#2075) 2021-04-08 20:04:01 -06:00
authorize authorize: support arbitrary jwt claims (#2102) (#2106) 2021-04-22 08:30:06 -06:00
cmd cmd/pomerium: exit 0 when intentionally terminated (#1958) 2021-03-02 15:47:25 -05:00
config config: don't change address value on databroker or authorize (#2092) 2021-04-16 10:46:32 -04:00
databroker databroker: remove unused installation id, close streams when backend is closed (#2062) 2021-04-06 13:41:19 -06:00
docs deployment: Publish OS packages to cloudsmith (#2105) (#2108) 2021-04-21 15:58:40 -04:00
examples databroker: rename cache service (#1790) 2021-01-21 08:41:22 -07:00
integration proxy: restrict programmatic URLs to localhost (#2049) 2021-04-01 10:04:49 -04:00
internal xdsmgr: update resource versions on NACK (#2093) 2021-04-16 08:23:40 -06:00
ospkg deployment: Generate deb and rpm packages (#1458) 2020-09-28 13:33:35 -04:00
pkg config: rename headers to set_response_headers (#2081) 2021-04-14 11:22:21 -07:00
proxy crypto: use actual bytes of shared secret, not the base64 encoded representation (#2075) 2021-04-08 20:04:01 -06:00
scripts deps: bump envoy to 1.17.2 (#2113) (#2114) 2021-04-22 10:33:42 -04:00
.codecov.yml development: change codecov precision 2019-07-18 16:49:37 -07:00
.dockerignore Update build and release process for envoy embedding (#699) 2020-05-18 17:10:10 -04:00
.gitattributes assets: use embed instead of statik (#1960) 2021-03-03 18:56:55 -07:00
.gitignore include envoy's proto specs into config.proto (#1817) 2021-01-25 13:15:50 -05:00
.golangci.yml databroker: refactor databroker to sync all changes (#1879) 2021-02-18 15:24:33 -07:00
.pre-commit-config.yaml databroker: rename cache service (#1790) 2021-01-21 08:41:22 -07:00
3RD-PARTY all: refactor handler logic 2019-09-16 18:01:14 -07:00
DEBUG.MD deplyoment: add debug build / container / docs (#1513) 2020-10-13 16:54:21 -04:00
Dockerfile Include pomerium-cli in the docker image by default. Fixes #1343. (#1345) 2020-08-28 15:39:54 -04:00
Dockerfile.debug deplyoment: add debug build / container / docs (#1513) 2020-10-13 16:54:21 -04:00
go.mod chore(deps): bump gopkg.in/auth0.v5 from 5.14.1 to 5.15.0 (#2098) 2021-04-19 09:57:06 -06:00
go.sum chore(deps): bump gopkg.in/auth0.v5 from 5.14.1 to 5.15.0 (#2098) 2021-04-19 09:57:06 -06:00
LICENSE initial release 2019-01-02 12:13:36 -08:00
lichen.yaml ci: license check action (#1773) 2021-01-13 15:46:47 -05:00
Makefile assets: use embed instead of statik (#1960) 2021-03-03 18:56:55 -07:00
package.json chore(deps): update vuepress monorepo to v1.8.2 2021-03-01 09:21:50 +00:00
README.md docs: update build badge (#1635) 2020-12-01 09:25:04 -05:00

pomerium logo

pomerium chat GitHub Actions Go Report Card GoDoc LICENSE codecov Docker Pulls

Pomerium is an identity-aware proxy that enables secure access to internal applications. Pomerium provides a standardized interface to add access control to applications regardless of whether the application itself has authorization or authentication baked-in. Pomerium gateways both internal and external requests, and can be used in situations where you'd typically reach for a VPN.

Pomerium can be used to:

  • provide a single-sign-on gateway to internal applications.
  • enforce dynamic access policy based on context, identity, and device state.
  • aggregate access logs and telemetry data.
  • a VPN alternative.

Docs

For comprehensive docs, and tutorials see our documentation.