Pomerium

Pomerium

Offiziell

Docker-Anwendung from Florian Dambrine's Repository

Übersicht

Pomerium - Secure, identity-aware access from anywhere.

Laufzeit-Argumente

Web-UI
http://[IP]:[PORT:80]
Netzwerk
bridge
Privilegiert
false

Konfiguration der Vorlage

Web UI PortPorttcp

Port of Pomerium

Ziel
80
Standard
8801
DebugVariable

Debug enables colored, human-readable logs to be streamed to standard out (opens new window). In production, it is recommended to be set to false.

Ziel
POMERIUM_DEBUG
Standard
false
Wert
false
AddressVariable

Address specifies the host and port to serve HTTP requests from.

Ziel
ADDRESS
Standard
:80
Wert
:80
InsecureVariable

Turning on insecure server mode will result in pomerium starting, and operating without any protocol encryption in transit. This setting can be useful in a situation where you have Pomerium behind a TLS terminating ingress or proxy. However, even in that case, it is highly recommended to use TLS to protect the confidentiality and integrity of service communication even behind the ingress using self-signed certificates or an internal CA. Please see our helm-chart for an example of just that.

Ziel
INSECURE_SERVER
Standard
true
Wert
true
Forward Auth URLVariable

Forward authentication creates an endpoint that can be used with third-party proxies that do not have rich access control capabilities. Forward authentication allows you to delegate authentication and authorization for each request to Pomerium.

Ziel
FORWARD_AUTH_URL
Standard
http://fwdauth.domain.duckdns.org
Wert
http://fwdauth.[domain].duckdns.org
Authenticate Service URLVariable

Authenticate Service URL is the externally accessible URL for the authenticate service.

Ziel
AUTHENTICATE_SERVICE_URL
Standard
https://authenticate.domain.duckdns.org
Wert
https://authenticate.[domain].duckdns.org
Cookie SecretVariable

Secret used to encrypt and sign session cookies. You can generate a random key with head -c32 /dev/urandom | base64.

Ziel
COOKIE_SECRET
Standard
OWTV2fONR7expoexvhzYBnkdVtrwTh0XhJsQqFMzJuk=
Wert
OWTV2fONR7expoexvhzYBnkdVtrwTh0XhJsQqFMzJuk=
Shared SecretVariable

Shared Secret is the base64 encoded 256-bit key used to mutually authenticate requests between services. It's critical that secret keys are random, and stored safely. Use a key management system or /dev/urandom to generate a key. Example head -c32 /dev/urandom | base64

Ziel
SHARED_SECRET
Standard
wB/J+7Fgc+XdCufhjnn/LVZhxjGmgsTaBr7VcjMBHTA=
Wert
wB/J+7Fgc+XdCufhjnn/LVZhxjGmgsTaBr7VcjMBHTA=
IDP ProviderVariable

Provider is the short-hand name of a built-in OpenID Connect (oidc) identity provider to be used for authentication. To use a generic provider,set to oidc.

Ziel
IDP_PROVIDER
Standard
google
Wert
google
Google Client IdVariable

Client ID is the OAuth 2.0 Client Identifier retrieved from your identity provider. See your identity provider's documentation, and our identity provider docs for details.

Ziel
IDP_CLIENT_ID
Google Client SecretVariable

Client Secret is the OAuth 2.0 Secret Identifier retrieved from your identity provider. See your identity provider's documentation, and our identity provider docs for details.

Ziel
IDP_CLIENT_SECRET
Pomerium configPathro

Pomerium config.yaml file. Mostly defines routes and authorizations but also anything else not available through this template

Ziel
/pomerium/config.yaml
Standard
/mnt/user/appdata/Pomerium/config.yaml

Kategorien

Statistik herunterladen

0
Downloads insgesamt
83,945
Dieser Monat
43,028
Durchschnittlich / Monat

Gesamte Downloads im Laufe der Zeit

Tabelle laden...

Einzelheiten

Repository
pomerium/pomerium
Zuletzt aktualisiert2026-05-28
Erstmals gesehen2021-02-07

Führen Sie Pomerium auf Unraid aus.

Pomerium ist gelistet in Community Apps für Unraid OS. Erkunden Sie Unraid, um einen flexiblen Heimserver, ein NAS oder ein Heimlabor aufzubauen.