What is Layer-7 Enforcement?
Layer 7 enforcement makes access decisions from application-protocol facts, such as the HTTP host, route, method, Model Context Protocol tool name, and verified identity context. It is more specific than a network rule that sees only an address, port, or connection.
Why it matters
One permitted network connection can carry many application actions. Application-aware policy can allow a low-risk operation and deny a high-risk operation on the same service.
How it works
- A proxy or gateway receives and understands the application request.
- It combines the operation with verified identity and current context.
- It enforces policy before it forwards the request to the protected service.
Example
Two tool calls use the same HTTPS endpoint. Policy allows list_incidents but denies delete_incident for the same caller.
Pomerium boundary
Pomerium operates as an identity-aware application proxy and checks policy before it routes a protected request. Its Model Context Protocol tool criterion adds tool-name policy for that traffic.
Limits and non-claims
- The enforcement point needs usable application semantics. Opaque end-to-end payloads limit what it can decide.
- Layer 7 access policy does not replace input validation, safe tool code, or a web application firewall.
- Pomerium documents non-HTTP TCP authorization as per session.
- Pomerium protects Model Context Protocol servers that use Streamable HTTP through a Pomerium route. It does not secure local stdio connections, the model runtime, tool code, or traffic that bypasses the route.
Evaluation checklist
- Which application protocol, message, resource, and action does the enforcement point understand?
- Are authority, path, method, headers, and message fields normalized before policy evaluation?
- Can encryption, tunneling, parser disagreement, or a direct endpoint bypass layer 7 checks?
Sources and further reading
- NIST SP 800-207AStandard
- Pomerium architecturePomerium documentation
- Pomerium authorizationPomerium documentation
- Pomerium Model Context Protocol supportPomerium documentation
- Pomerium MCP referencePomerium documentation
- Model Context Protocol toolsStandard
- Pomerium connection behaviorPomerium documentation
