Recently Updated Pages
Apache Webserver
Apache 2.4 and above have slightly different ACL syntax, so this page covers how you can use Knoc...
Nginx
Nginx support via script was added in knocknoc-agent version 1.0.30. This allows for flexible ACL...
Mikrotik RouterOS
The scripting backend can be used for MikroTik RouterOS config updates as well. Here is a sample ...
SAML
SAML is an in-depth topic, however it represents the best option for securing users, and providin...
SAML with CyberArk
CyberArk integrates with Knocknoc via the "Web Apps" component, passing through SAML assertions. ...
Debugging & log levels
Things go wrong from time to time, the best way to understand more detail is to increase the log ...
Cisco (SFMC/Firepower)
The Cisco Secure Firewall Management Console (formerly known as Firepower) integration allows Kn...
Microsoft Entra
Overview This integration is designed to manage named locations in Microsoft Azure Conditional A...
FortiOS, FortiProxy, Palo Alto, or SSL VPN
Protect your existing Fortigate or Palo assets from direct internet or internal exposure by intro...
Juniper SRX
Passive, Active or a combination Passive - Knocknoc's Allowlist features provides a passive inte...
SAML with OKTA
The following example assumes your Knocknoc instance is located at https://demo.knoc.cloud. Where...
Firewall Manager access (IT MSP)
An IT managed services provider maintained multiple Fortinet firewalls on behalf of customers, of...
Ivanti Connect Secure
Ivanti Connect Secure devices that have an outer firewall or control layer can be protected from ...
Azure Portal
Azure Portal or specific Azure services can be further protected through the use of the Knocknoc ...
Video
Streaming low-latency video is a challenge for firewalls and VPNs, and Knocknoc is an excellent s...
VOIP
Having roaming users be able to use a handset from home, and protect your PABX from brute force a...
Web applications (layer-7 filtering)
There are various options for protecting your web application using Knocknoc Local Linux firew...
SAML with Keycloak
Keycloak supports multiple authentication realms, so you must first select the appropriate realm ...
SAML with Gsuite as IDP
Gsuite can be setup as an Identity Provider if you have Gsuite Business Startter or above plan. ...
SAML with Jumpcloud
The following example assumes your Knocknoc instance is located at https://demo.knoc.cloud. Where...