Self-hosted control
Operate the control plane and access path in your environment.
Pomerium Enterprise
Run the Pomerium control plane and Core data plane in your environment. Add centralized configuration, delegated administration, and enterprise policy features.
Operate the control plane and access path in your environment.
Use namespaces and roles to organize administration.
Add enterprise policy, data, history, and API workflows.
The Enterprise Console and Core clusters run in infrastructure that you operate.
Core replicas proxy application traffic to the selected private upstreams.
Self-hosted operations
Enterprise keeps both the control plane and data plane in your environment while providing centralized configuration.
Enterprise governance
Enterprise adds administration, policy, audit, and scale features for organizations that operate the full Pomerium deployment.
Enterprise operations
Use the self-hosted Console and Enterprise API to manage routes, policies, service accounts, and Core clusters.
Use namespaces and roles for team self-service. View, export, and revoke sessions in the Enterprise Console.
Write policy with PPL or Rego. Add directory and external data to policy decisions. Review and export Console change logs from deployment history.
Install and operate the Enterprise Console.
Namespaces, PPL, Rego, and delegated policy administration.
Programmatic administration through the Enterprise API.