Skip to main content
See All Environments

Proxmox Virtual Environment

Run Pomerium Core in a supported Linux virtual machine on Proxmox VE infrastructure.

Pomerium Core deployment pattern

Runs Pomerium Core

Category
Private Infrastructure

Overview

Proxmox Virtual Environment (Proxmox VE) is an open-source server virtualization platform. It combines KVM virtual machines, Linux Containers, storage, networking, clustering, and a web management interface.

Private applications can span many Proxmox virtual machines. A dedicated Pomerium virtual machine provides selected access without broad reach into the virtualization network.

Proxmox Virtual Environment supplies the runtime or deployment environment. Pomerium runs in that environment and supplies the identity-aware access point for selected services.

Prerequisites

  • A supported Linux host that can accept the user-facing route and reach the private upstream service.
  • DNS, TLS, identity-provider configuration, protected secrets, and durable storage where the selected design requires it.

How it works

Run Pomerium Core on a supported Linux host in the environment. Install the official package, standalone binary, or container. Configure DNS, TLS, identity, route policy, storage, and replicas for the selected design.

Create a supported Linux KVM virtual machine for Pomerium Core. Place it on a network that can accept the user-facing route and reach protected application virtual machines. Keep extra application software off the hypervisor host.

Check service health, DNS, TLS, required storage and replicas, and upstream reachability. Confirm that a direct public route cannot bypass Pomerium.

Example

A private inventory service runs on one Proxmox VE virtual machine. Pomerium runs on a separate Ubuntu virtual machine and forwards approved requests to the inventory service.

Considerations

  • This environment page covers virtual-machine placement. The integration page separately covers protection of the Proxmox VE management interface.
  • Pomerium does not manage Proxmox clusters, storage, virtual machines, or network policy.

Sources and official resources

  • Deploy Pomerium near on-premises applications and protect them with identity-aware policy.

  • Deploy Pomerium near services that run on bare-metal infrastructure.

  • Deploy Pomerium near applications and services that run on Debian systems.

Get a Personalized Demo

Schedule a Call with a Pomerium Engineer

Get a Demo