Enroll a gateway
Install and connect a Linux gateway beside private applications.
Prerequisites#
Use a Linux host with sudo, outbound HTTPS, and network reachability to the applications it will serve. Gateway enrollment is not available on macOS or Windows.
Enroll#
- Open Network → Gateways → Add Gateway.
- Copy the generated install-and-enroll command.
- Run it on the Linux host with sudo.
- Keep the Console open until the watcher reports the gateway connected.
The embedded enrollment code is single-use and expires. Generate a new code rather than editing or reusing it.
Next steps#
Publish a service, then create access. Add LAN networks only for site-to-site routing. To use the host for internet egress, edit it and set Exit Node to Enabled, then add an egress policy.
If the gateway is later revoked, remove its service assignments by editing and saving each affected service.