Pomerium is an identity and context-aware access proxy.
Find a file
2022-06-08 07:15:18 -06:00
.devcontainer try pinning docker dependency (#3185) 2022-03-23 13:47:35 -06:00
.github github-actions: remove mysql bump (#3405) 2022-06-06 12:55:10 -06:00
.vscode config related metrics (#2065) 2021-04-07 12:29:36 -07:00
authenticate authenticate: fix internal service URL dashboard redirect (#3305) 2022-04-29 08:09:28 -06:00
authorize authorize: use query instead of sync for databroker data (#3377) 2022-06-01 15:40:07 -06:00
cmd/pomerium rm cli code (#2824) 2021-12-15 16:25:21 -05:00
config replace fmt.Sprintf with net.JoinHostPort (#3407) 2022-06-07 13:04:13 -06:00
databroker do not require idp set in the bootstrap config, as it may be later configured via the databroker (#3386) 2022-05-31 11:42:19 -04:00
docs Docs: Document TCP routes in Kubernetes (#3341) 2022-05-12 10:01:53 -07:00
examples fixing pomerium traefik sample (#3290) 2022-05-05 07:38:43 -07:00
integration integration: use postgres instead of redis for tests (#3390) 2022-06-03 15:15:08 -06:00
internal use generic version of btree (#3404) 2022-06-06 14:31:05 -04:00
ospkg updates examples for current routes/policy keys (#3034) 2022-02-16 14:06:52 -06:00
pkg postgres: fix CIDR query (#3389) 2022-06-03 12:32:01 -06:00
proxy authenticate: allow changing the authenticate service URL at runtime (#3378) 2022-05-31 13:24:40 -06:00
scripts docs: Add UUID to docs yaml blocks (#3251) 2022-04-08 08:54:27 -06:00
ui chore(deps): bump minimist from 1.2.5 to 1.2.6 in /ui (#3188) 2022-03-24 11:37:30 -06:00
.codecov.yml development: change codecov precision 2019-07-18 16:49:37 -07:00
.dockerignore frontend: react+mui (#3004) 2022-02-07 08:47:58 -07:00
.fossa.yml rm cli code (#2824) 2021-12-15 16:25:21 -05:00
.gitattributes assets: use embed instead of statik (#1960) 2021-03-03 18:56:55 -07:00
.gitignore frontend: react+mui (#3004) 2022-02-07 08:47:58 -07:00
.golangci.yml userinfo: fix logout button, add sign out confirm page (#3058) 2022-02-23 08:15:00 -07:00
.pre-commit-config.yaml integration: add single-cluster integration tests (#2516) 2021-08-24 15:35:05 -06:00
3RD-PARTY dependencies: vendor base58, remove shortuuid (#2739) 2021-11-02 09:23:15 -06:00
DEBUG.MD deplyoment: add debug build / container / docs (#1513) 2020-10-13 16:54:21 -04:00
Dockerfile storage: add filter expressions, upgrade go to 1.18.1 (#3365) 2022-05-16 20:09:50 -06:00
Dockerfile.debug storage: add filter expressions, upgrade go to 1.18.1 (#3365) 2022-05-16 20:09:50 -06:00
go.mod chore(deps): bump google.golang.org/api from 0.81.0 to 0.82.0 (#3401) 2022-06-06 12:29:05 -04:00
go.sum chore(deps): bump google.golang.org/api from 0.81.0 to 0.82.0 (#3401) 2022-06-06 12:29:05 -04:00
LICENSE initial release 2019-01-02 12:13:36 -08:00
Makefile fix: The built binary file is missing "ui/dist/index.js" and "ui/dist… (#3391) 2022-06-06 11:20:28 -04:00
package.json add twitter meta tags (#3252) 2022-04-08 10:15:16 -05:00
pomerium.go fix go get, improve redis test (#2450) 2021-08-06 12:07:20 -06:00
README.md integration: update readme with instructions for how to run the tests locally (#3409) 2022-06-08 07:15:18 -06:00
RELEASING.md ci: rename master to main (#3045) 2022-02-15 16:02:40 -05:00
SECURITY.md symlink security policy to root of project (#2396) 2021-07-26 10:42:21 -07:00
tools.go protoc: add xds repo (#2687) 2021-10-19 14:36:23 -06:00
yarn.lock chore(deps): bump eventsource from 1.1.0 to 1.1.1 (#3388) 2022-06-02 14:01:27 -06:00

pomerium logo

pomerium chat GitHub Actions Go Report Card GoDoc LICENSE Docker Pulls

Pomerium is an identity-aware proxy that enables secure access to internal applications. Pomerium provides a standardized interface to add access control to applications regardless of whether the application itself has authorization or authentication baked-in. Pomerium gateways both internal and external requests, and can be used in situations where you'd typically reach for a VPN.

Pomerium can be used to:

  • provide a single-sign-on gateway to internal applications.
  • enforce dynamic access policy based on context, identity, and device identity.
  • aggregate access logs and telemetry data.
  • a VPN alternative.

Docs

For comprehensive docs, and tutorials see our documentation.

Integration Tests

To run the integration tests locally, first build a local development image:

./scripts/build-dev-docker.bash

Next go to the integration/clusters folder and pick a cluster, for example google-single, then use docker-compose to start the cluster. We use an environment variable to specify the dev docker image we built earlier:

cd integration/clusters/google-single
env POMERIUM_TAG=dev docker-compose up -V

Once that's up and running you can run the integration tests from another terminal:

go test -count=1 -v ./integration/...

If you need to make a change to the clusters themselves, there's a tpl folder that contains jsonnet files. Make a change and then rebuild the clusters by running:

go run ./integration/cmd/pomerium-integration-tests/ generate-configuration