Skip to main content
See All Environments

Ubuntu

Deploy Pomerium near applications and services that run on Ubuntu systems.

Official Pomerium DEB package workflow

Runs Pomerium Core

Category
Operating Systems

Overview

Ubuntu is an open-source operating system published by Canonical. Ubuntu Server is the server edition used on physical hardware, virtual machines, public clouds, and private infrastructure.

Teams use Ubuntu hosts for internal web applications, developer tools, APIs, databases, and administration services. Pomerium puts one identity-aware access layer in front of the selected services instead of requiring each application to build the same access flow.

Ubuntu supplies the operating system and service runtime. Pomerium supplies the identity-aware access point. This separation lets teams protect different Ubuntu applications with one route and policy model.

How it works

Install Pomerium Core from the official Pomerium deb repository and run it as a systemd service. You can also use the official Linux binary or Docker image.

Place Pomerium on an Ubuntu host that has a network path to each protected service. Configure the user-facing DNS name and TLS certificate. Define a Pomerium route from that name to the private service address.

Use persistent storage and the documented multi-replica design when the deployment needs persistence or high availability.

Example

A private source-code service runs on an Ubuntu virtual machine. Pomerium runs on an Ubuntu gateway host in the same connected network. The user connects to Pomerium. Pomerium authenticates the user and evaluates the route policy. It sends an approved request to the private source-code service.

Considerations

  • Pomerium does not publish binaries for every CPU architecture that Ubuntu supports.
  • Pomerium Core runs on the server. Pomerium Desktop is a client for non-HTTP access.
  • Docker and Kubernetes deployments have their own runtime and storage requirements.

Sources and official resources

  • Deploy Pomerium near applications and services that run on Debian systems.

  • Run Pomerium with Docker and protect containerized applications and services.

  • Deploy Pomerium on Kubernetes and protect services across Kubernetes clusters.

Get a Personalized Demo

Schedule a Call with a Pomerium Engineer

Get a Demo