Pomerium is an identity and context-aware access proxy.
Find a file
Denis Mishin 7cf6277f4e
envoy: upgrade to v1.28.2 (#5057)
* envoy: upgrade to v1.28.2
* fallback to 1.28.0 for macos
2024-04-05 13:14:24 -07:00
.github core/ci: check docker base images (#5028) 2024-03-12 18:53:58 -04:00
.vscode use tlsClientConfig instead of custom dialer (#3830) 2022-12-27 09:55:36 -07:00
authenticate core/authenticate: refactor identity authenticators to initiate redirect (#4858) 2023-12-19 12:04:23 -07:00
authorize chore(deps): bump github.com/spf13/viper from 1.16.0 to 1.18.2 (#4861) 2023-12-27 16:16:38 -07:00
changelogs changelog: v0.25.1 (#5029) 2024-03-12 21:20:46 -04:00
cmd/pomerium core/go: use max procs (#4766) 2023-12-07 09:14:57 -07:00
config chore(deps): bump github.com/spf13/viper from 1.16.0 to 1.18.2 (#4861) 2023-12-27 16:16:38 -07:00
databroker core: fix graceful stop (#4865) 2023-12-29 10:18:08 -07:00
examples core/config: remove debug option, always use json logs (#4857) 2023-12-15 11:29:05 -07:00
integration core/ci: update linting (#4844) 2023-12-14 09:07:54 -08:00
internal core/zero: fix ticker usage (#5019) 2024-03-06 13:53:12 -08:00
k8s/zero zero/k8s: deployment manifests (#4763) 2024-01-08 12:08:14 -05:00
ospkg move directory providers (#3633) 2022-11-03 11:33:56 -06:00
pkg chore(deps): bump golang from a6b787c to 1415bb0 (#4883) 2024-01-02 11:05:37 -07:00
proxy core/proxy: handle missing session for user info endpoint (#4769) 2024-01-08 07:03:49 -07:00
scripts envoy: upgrade to v1.28.2 (#5057) 2024-04-05 13:14:24 -07:00
ui core/proxy: handle missing session for user info endpoint (#4769) 2024-01-08 07:03:49 -07:00
.codecov.yml development: change codecov precision 2019-07-18 16:49:37 -07:00
.dockerignore frontend: react+mui (#3004) 2022-02-07 08:47:58 -07:00
.fossa.yml rm cli code (#2824) 2021-12-15 16:25:21 -05:00
.gitattributes assets: use embed instead of statik (#1960) 2021-03-03 18:56:55 -07:00
.gitignore tls: wildcard catch-all cert must be at the end of cert list (#4119) 2023-04-21 12:37:32 -04:00
.golangci.yml core/ci: update linting (#4844) 2023-12-14 09:07:54 -08:00
.pre-commit-config.yaml integration: add single-cluster integration tests (#2516) 2021-08-24 15:35:05 -06:00
.tool-versions ci: bump Go to 1.21.8 in docker (#5027) 2024-03-12 19:25:24 -04:00
3RD-PARTY dependencies: vendor base58, remove shortuuid (#2739) 2021-11-02 09:23:15 -06:00
DEBUG.MD deplyoment: add debug build / container / docs (#1513) 2020-10-13 16:54:21 -04:00
Dockerfile ci: bump Go to 1.21.8 in docker (#5027) 2024-03-12 19:25:24 -04:00
Dockerfile.debug ci: bump Go to 1.21.8 in docker (#5027) 2024-03-12 19:25:24 -04:00
go.mod chore(deps): bump github.com/cloudflare/circl from 1.3.6 to 1.3.7 (#4901) 2024-01-08 10:03:48 -07:00
go.sum chore(deps): bump github.com/cloudflare/circl from 1.3.6 to 1.3.7 (#4901) 2024-01-08 10:03:48 -07:00
LICENSE initial release 2019-01-02 12:13:36 -08:00
Makefile zero/telemetry: add reporter (#4855) 2023-12-20 14:53:06 -05:00
pomerium.go fix go get, improve redis test (#2450) 2021-08-06 12:07:20 -06:00
README.md Docs: remove tcp example (#4616) 2023-10-03 17:47:33 -04:00
RELEASING.md deployment: update RELEASING.md (#3503) 2022-08-16 10:40:03 -07:00
SECURITY.md Update SECURITY.md (#4144) 2023-05-01 15:17:50 -04:00

pomerium logo

Go Report Card GoDoc LICENSE Docker Pulls

Pomerium builds secure, clientless connections to internal web apps and services without a corporate VPN.

Pomerium is:

  • Easier because you dont have to maintain a client or software.
  • Faster because its deployed directly where your apps and services are. No more expensive data backhauling.
  • Safer because every single action is verified for trusted identity, device, and context.

Its not a VPN alternative its the trusted, foolproof way to protect your business.

Docs

For comprehensive docs, and tutorials see our documentation.

Integration Tests

To run the integration tests locally, first build a local development image:

./scripts/build-dev-docker.bash

Next go to the integration/clusters folder and pick a cluster, for example google-single, then use docker-compose to start the cluster. We use an environment variable to specify the dev docker image we built earlier:

cd integration/clusters/google-single
env POMERIUM_TAG=dev docker-compose up -V

Once that's up and running you can run the integration tests from another terminal:

go test -count=1 -v ./integration/...

If you need to make a change to the clusters themselves, there's a tpl folder that contains jsonnet files. Make a change and then rebuild the clusters by running:

go run ./integration/cmd/pomerium-integration-tests/ generate-configuration