Pomerium is an identity and context-aware access proxy.
Find a file
backport-actions-token[bot] aa9d7b8a8b
authorize: use session.user_id in headers (#2571) (#2572)
Co-authored-by: Caleb Doxsey <cdoxsey@pomerium.com>
2021-09-03 14:56:22 -06:00
.devcontainer docs: replace httpbin with verify (#1702) 2020-12-22 09:53:08 -08:00
.github deployment: update goreleaser syntax (#2524) (#2525) 2021-08-25 10:40:31 -04:00
.vscode config related metrics (#2065) 2021-04-07 12:29:36 -07:00
authenticate sessions: add impersonate_session_id, remove legacy impersonation (#2407) 2021-07-30 08:42:36 -06:00
authorize authorize: use session.user_id in headers (#2571) (#2572) 2021-09-03 14:56:22 -06:00
cmd k8s: add flush-credentials command (#2379) 2021-07-20 14:51:55 -07:00
config ppl: use session.user_id instead of user.id for user criterion (#2562) (#2563) 2021-09-03 07:58:18 -06:00
databroker envoy: add full version (#2287) 2021-06-14 13:58:12 -06:00
docs docs: enterprise console v0.15.2 changelog (#2564) (#2565) 2021-09-03 16:18:44 +00:00
examples adjust comment blocking (#2488) (#2489) 2021-08-17 17:16:04 -07:00
integration log context (#2107) 2021-04-22 10:58:13 -04:00
internal Remove api from GitLab defaultScope (#2518) (#2528) 2021-08-25 08:50:30 -07:00
ospkg deployment: Generate deb and rpm packages (#1458) 2020-09-28 13:33:35 -04:00
pkg ppl: use session.user_id instead of user.id for user criterion (#2562) (#2563) 2021-09-03 07:58:18 -06:00
proxy options: remove refresh_cooldown, add allow_spdy to proto (#2446) (#2448) 2021-08-06 16:08:27 +00:00
scripts deps: update envoy to 1.19.1 (#2526) (#2527) 2021-08-25 10:58:37 -04:00
.codecov.yml development: change codecov precision 2019-07-18 16:49:37 -07:00
.dockerignore Update build and release process for envoy embedding (#699) 2020-05-18 17:10:10 -04:00
.fossa.yml ci: convert to FOSSA scan (#2371) 2021-07-19 15:06:57 -04:00
.gitattributes assets: use embed instead of statik (#1960) 2021-03-03 18:56:55 -07:00
.gitignore envoy: add full version (#2287) 2021-06-14 13:58:12 -06:00
.golangci.yml ci: use revive instead of golint (#2370) 2021-07-16 10:26:47 -06:00
.pre-commit-config.yaml databroker: rename cache service (#1790) 2021-01-21 08:41:22 -07:00
3RD-PARTY all: refactor handler logic 2019-09-16 18:01:14 -07:00
DEBUG.MD deplyoment: add debug build / container / docs (#1513) 2020-10-13 16:54:21 -04:00
Dockerfile Include pomerium-cli in the docker image by default. Fixes #1343. (#1345) 2020-08-28 15:39:54 -04:00
Dockerfile.debug deployment: update alpine debug image dependencies (#2154) 2021-04-29 08:45:03 -06:00
go.mod chore(deps): bump github.com/go-redis/redis/v8 from 8.11.1 to 8.11.2 (#2455) (#2459) 2021-08-09 15:16:41 -04:00
go.sum chore(deps): bump github.com/go-redis/redis/v8 from 8.11.1 to 8.11.2 (#2455) (#2459) 2021-08-09 15:16:41 -04:00
LICENSE initial release 2019-01-02 12:13:36 -08:00
Makefile telemetry: add nonce and make explicit ack/nack (#2434) 2021-08-04 21:08:55 -04:00
package.json Update Docker Quickstart (#2482) (#2486) 2021-08-17 11:13:24 -05:00
README.md docs: clarify device identity, not state, via client certs (#2428) 2021-08-03 21:46:14 -04:00
RELEASING.md v0.15 release notes (#2409) 2021-08-03 21:36:48 -04:00
SECURITY.md symlink security policy to root of project (#2396) 2021-07-26 10:42:21 -07:00
tools.go tools: add tools.go to pin go run apps (#2344) 2021-07-07 17:34:51 -06:00

pomerium logo

pomerium chat GitHub Actions Go Report Card GoDoc LICENSE Docker Pulls

Pomerium is an identity-aware proxy that enables secure access to internal applications. Pomerium provides a standardized interface to add access control to applications regardless of whether the application itself has authorization or authentication baked-in. Pomerium gateways both internal and external requests, and can be used in situations where you'd typically reach for a VPN.

Pomerium can be used to:

  • provide a single-sign-on gateway to internal applications.
  • enforce dynamic access policy based on context, identity, and device identity.
  • aggregate access logs and telemetry data.
  • a VPN alternative.

Docs

For comprehensive docs, and tutorials see our documentation.