pomerium/docs/guides
Alex Fornuto a95aa7cb77
DOCS: New Guide: Upstream mTLS (#2814)
* rename mtls.md to be client-side specific

* init upstream mTLS guide

* Apply suggestions from code review

Co-authored-by: Travis Groth <travisgroth@users.noreply.github.com>

* clarify assumed config dir

* Apply suggestions from code review

Co-authored-by: bobby <1544881+desimone@users.noreply.github.com>

* link to before-you-begin anchor

* Update docs/guides/upstream-mtls.md

Co-authored-by: Travis Groth <travisgroth@users.noreply.github.com>
Co-authored-by: bobby <1544881+desimone@users.noreply.github.com>
2021-12-27 18:14:18 -06:00
..
img DOCS: New Guide: Upstream mTLS (#2814) 2021-12-27 18:14:18 -06:00
ad-guard.md Enterprise Docs (#2390) 2021-08-04 13:55:04 -05:00
argo.md replace bdd@pom with user@example (#2484) 2021-08-16 15:56:56 -07:00
cloud-run.md docs: replace httpbin with verify (#1702) 2020-12-22 09:53:08 -08:00
code-server.md Enterprise Docs (#2390) 2021-08-04 13:55:04 -05:00
grafana.md Docs: Update JWT Verification Guide (#2746) 2021-11-29 15:11:39 -06:00
istio.md docs: refactor sections, consolidate examples (#1164) 2020-07-30 11:02:14 -07:00
jwt-verification.md Docs: Update JWT Verification Guide (#2746) 2021-11-29 15:11:39 -06:00
kubernetes-dashboard.md Docs: Update Kubernetes Dashboard Guide (#2759) 2021-11-30 20:16:12 -06:00
kubernetes.md Docs: Update Securing Kubernetes Guide (#2758) 2021-11-30 14:04:17 -06:00
local-oidc.md Update binary install doc (#2447) 2021-08-06 12:43:57 -05:00
mtls.md DOCS: New Guide: Upstream mTLS (#2814) 2021-12-27 18:14:18 -06:00
nginx.md docs: replace httpbin with verify (#1702) 2020-12-22 09:53:08 -08:00
readme.md DOCS: New Guide: Upstream mTLS (#2814) 2021-12-27 18:14:18 -06:00
synology.md Enterprise Docs (#2390) 2021-08-04 13:55:04 -05:00
tcp.md Refresh and Update TCP documentation (#2627) 2021-10-14 09:35:31 -05:00
tiddlywiki.md Enterprise Docs (#2390) 2021-08-04 13:55:04 -05:00
traefik-ingress.md docs: Add Traefik + Kubernetes example (#1411) 2020-09-19 13:33:32 -04:00
transmission.md doc updates (#2433) 2021-08-04 15:00:31 -07:00
upstream-mtls.md DOCS: New Guide: Upstream mTLS (#2814) 2021-12-27 18:14:18 -06:00

Overview

This section contains applications, and scenario specific guides for Pomerium.

  • The ad-guard recipe demonstrates how Pomerium can be used to augment web applications that only support simplistic authorization mechanisms like basic-auth with single-sign-on driven access policy.
  • The argo guide demonstrates how Pomerium can be used to add access control to Argo.
  • The Client-Side mTLS guide demonstrates how Pomerium can be used to add mutual authentication to end-user connections using client certificates and a custom certificate authority.
  • The Cloud Run recipe demonstrates deploying Pomerium to Google Cloud Run as well as using it to Authorize users to protected Cloud Run endpoints.
  • The code-server guide demonstrates how Pomerium can be used to add access control to third-party applications that don't ship with fine-grained access control. code-server is a tool to run Visual Studio code as a web application.
  • Our Grafana guide explains how to secure Grafana with Pomerium and integrate user sign-in using our JWT.
  • The JWT Verification guide demonstrates how to verify the Pomerium JWT assertion header using Envoy.
  • The Kubernetes Dashboard guide covers how to secure Kubernetes dashboard using Pomerium.
  • The kubernetes guide covers how to add authentication and authorization to kubernetes dashboard using helm, and letsencrypt certificates. This guide also shows how third party reverse-proxies like nginx/traefik can be used in conjunction with Pomerium using forward-auth.
  • The local OIDC guide demonstrates how Pomerium can be used with local OIDC server for dev/testing.
  • Our Synology guide demonstrates how lightweight Pomerium is by installing it on a Synology NAS or similar low-resource product.
  • The TiddlyWiki guide demonstrates how Pomerium can be used to add authentication and authorization to web application using authenticated header.
  • The Transmission guide demonstrates how Pomerium can act as an authentication and authorization proxy for your Transmission daemon's RPC interface, which only provides unencrypted HTTP auth out of the box.
  • Upstream mTLS With Pomerium explains how to provide a client certificate (mTLS) from Pomerium to an upstream service.