Recently Updated Pages
SSH
Use Case: Eliminating SSH Attack Surface in a Distributed Environment A large distributed enterp...
Logging
Logging is important - we love logging. Because of this, we have included an easy to find, follo...
LOOTOTL - Last One Out Turn Off The Lights
Knocknoc keeps a track of the IPs and tries to be kind to users that share IPs. This means that i...
AWS WAF Ipset
Below is a concise guide for a sysadmin (or developer) to set up and configure AWS WAF with a cus...
Microsoft Entra
Overview This integration is designed to manage named locations in Microsoft Azure Conditional A...
Apache Webserver
Apache 2.4 and above have slightly different ACL syntax, so this page covers how you can use Knoc...
Nginx
Nginx support via script was added in knocknoc-agent version 1.0.30. This allows for flexible ACL...
IPsets with Shorewall
This is an example that lets you use Shorewall https://shorewall.org/index.html and IPsets to dyn...
Mikrotik RouterOS
The scripting backend can be used for MikroTik RouterOS config updates as well. Here is a sample ...
IPsets with UFW
This is an example that lets you use UFW (https://wiki.ubuntu.com/UncomplicatedFirewall) and IPse...
AWS (EC2) Security Groups
Knocknoc can easily connect to AWS using common utilities and IAM credentials, and update the all...
Licensing Knocknoc
Knocknoc licensing and pricing can be found on the Knocknoc website. Once you have obtained your...
SAML with CyberArk
CyberArk integrates with Knocknoc via the "Web Apps" component, passing through SAML assertions. ...
SAML with Keycloak
Keycloak supports multiple authentication realms, so you must first select the appropriate realm ...
SAML with Gsuite as IDP
Gsuite can be setup as an Identity Provider if you have Gsuite Business Startter or above plan. ...
SAML for the Admin Interface
SAML for the admin interface is the same as SAML for the user base with a few very small alterati...
SAML with Jumpcloud
The following example assumes your Knocknoc instance is located at https://demo.knoc.cloud. Where...
SAML Principles and Terms
An overview of SAML principles and key terms to help you effectively configure and manage SAML wi...
LDAP
Knocknoc can authenticate users to an LDAP server like Active Directory, by attempting to bind as...
Knocker - a cli utility for agents
The Knocker utility is a command-line tool for managing various backends with ease. It provides c...