Recently Updated Pages
Agent installation
Agent requirements The agent will attempt to connect to your Knocknoc server using https on port...
v8.5
Knocknoc 8.5 Knocknoc 8.5 delivers key improvements in usability, integrations, and security, ...
High availability
The Knocknoc Server can be deployed in various ways to match your high-availability needs and dep...
SAML with EntraID (Azure AD)
The following example assumes your Knocknoc instance is located at https://demo.knoc.cloud. Where...
Knocknoc Reverse Proxy
The Knocknoc orchestration Agent - which is deployed alongside managed infrastructure (not on des...
HAProxy + KAT
Sometimes IP address restrictions or IP-based allowlisting is not enough, think: airport lounge, ...
Server installation (on premise)
On a Linux host as Root, execute the below command to setup and install your Knocknoc server. You...
Palo Alto
Passive, Active or a combination Passive - Knocknoc's Allowlist features provides a passive inte...
AWS (EC2) Security Groups
Knocknoc can orchestrate Amazon AWS Security Groups, which essentially provide network level fire...
Fortigate Address Groups (Fortinet)
The FortiOS integration allows Knocknoc to dynamically add and remove user's source IP from a na...
SAML for the Admin Interface
SAML for the admin interface is the same as SAML for the user base with a few very small alterati...
Package Repository Key expired
Debian distros (Ubuntu etc) If you are getting the this error: Failed to fetch https://packages...
Agent as a Reverse Proxy
The orchestration agent can be configured to reverse-proxy traffic, simply by enabling this mode ...
BYO PostgreSQL
Knocknoc server v8.5+ installs with a local installation of PostgreSQL by default. However, you m...
Logging
Logging is important - we love logging. Because of this, we have included an easy to find, follo...
IPsets with UFW
This is an example that lets you use UFW (https://wiki.ubuntu.com/UncomplicatedFirewall) and IPse...
IPSet (Linux Netfilter/IPTables)
IPSets are a powerful and highly efficient way of making a dynamic firewall on a normal Linux mac...
v7.7
Knocknoc 8.5 Knocknoc 8.5 delivers key improvements in usability, integrations, and security, ...
Custom Script
The "Custom Script" Knoc type is simply a script the agent can execute directly on the Agent mach...
IPsets with Shorewall
This is an example that lets you use Shorewall https://shorewall.org/index.html and IPsets to dyn...