Open source
Inspect the source and run the Pomerium server in infrastructure that you control.
Pomerium Core
Install and operate the open-source Pomerium gateway in your environment. Protect selected applications and services with identity-aware route policy.
Inspect the source and run the Pomerium server in infrastructure that you control.
Own configuration, identity-provider setup, certificates, persistence, scaling, and upgrades.
Protect a selected application or service through an identity-aware route.
The Pomerium server and its configuration are available in the public Core repository.
Core applies identity-aware policy before it proxies an approved request to a private upstream.
Identity-aware gateway
Core combines the proxy, authentication, authorization, and data-broker services that enforce access to each configured route.
Self-managed operations
You install, configure, scale, and operate Core. The open-source project supports several deployment paths without a Pomerium-managed control plane.
Deployment paths
Use the Core quickstart to run Pomerium with Docker and Docker Compose.
Use the Pomerium Ingress Controller to define routes and policy with Kubernetes resources.
Install a published binary or operating-system package when a container platform is not the right fit.
Install Core and build the first protected route.
Review the proxy, authentication, authorization, and data-broker services.
Inspect the source, releases, and project documentation.