
Debian
Deploy Pomerium near applications and services that run on Debian systems.
Overview
Debian is a free and open-source Linux operating system. It runs on physical servers, virtual machines, and cloud systems. Pomerium publishes DEB packages, standalone Linux binaries, and container images.
Private Debian services can use a common identity-aware gateway instead of direct public exposure or a separate sign-in implementation in every application.
Debian supplies the runtime or deployment environment. Pomerium runs in that environment and supplies the identity-aware access point for selected services.
Prerequisites
- A supported Linux host that can accept the user-facing route and reach the private upstream service.
- DNS, TLS, identity-provider configuration, protected secrets, and durable storage where the selected design requires it.
How it works
Run Pomerium Core on a supported Linux host in the environment. Install the official package, standalone binary, or container. Configure DNS, TLS, identity, route policy, storage, and replicas for the selected design.
Configure the official Pomerium DEB repository and install Pomerium Core with APT. The package supplies a systemd service. Place the host where it can accept the user-facing route and reach the private services.
Check service health, DNS, TLS, required storage and replicas, and upstream reachability. Confirm that a direct public route cannot bypass Pomerium.
Example
A private inventory application runs on a Debian virtual machine. Pomerium runs on a connected Debian gateway host and forwards only approved requests to the application.
Considerations
- Pomerium does not manage Debian packages, patches, AppArmor, firewall rules, or host hardening.
