Rocky Linux
Deploy Pomerium near applications and services that run on Rocky Linux systems.
Overview
Rocky Linux is a community enterprise Linux operating system for physical systems, virtual machines, and cloud environments. Pomerium publishes RPM packages that can run on a compatible Rocky Linux host.
Private Rocky Linux applications can use a common access layer instead of direct public exposure or duplicate external sign-in code.
Rocky Linux supplies the runtime or deployment environment. Pomerium runs in that environment and supplies the identity-aware access point for selected services.
Prerequisites
- A supported Linux host that can accept the user-facing route and reach the private upstream service.
- DNS, TLS, identity-provider configuration, protected secrets, and durable storage where the selected design requires it.
How it works
Run Pomerium Core on a supported Linux host in the environment. Install the official package, standalone binary, or container. Configure DNS, TLS, identity, route policy, storage, and replicas for the selected design.
Configure the official Pomerium RPM repository and install Pomerium Core with DNF. Place the host where it can accept the user-facing route and reach the private service.
Check service health, DNS, TLS, required storage and replicas, and upstream reachability. Confirm that a direct public route cannot bypass Pomerium.
Example
An internal reporting application runs on Rocky Linux. Pomerium runs on a separate connected Rocky Linux host and forwards only approved requests.
Considerations
- Pomerium does not manage Rocky Linux updates, SELinux policy, or firewall rules.
