Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

146 total results found

Manage user sessions

Admin Guide Knocknoc API

User sessions can be terminated using the API. This is handy for integration with revocation systems, SOAR/SIEM integrations whereby immediate termination of network access and sessions is desired. As an Admin, visit the API keys section and choose "Manage use...

Allowlist/EDL access

Admin Guide Knocknoc API

Allowlists or External Dynamic Lists (EDLs) served from Knocknoc require a secret for access, along with the specific EDL URI. These secrets are automatically created when a Passive integration is established, but can be edited or expanded. As an Admin, visit ...

Agent registration

Admin Guide Knocknoc API

API keys can be created to allow just-in-time orchestration Agent registration, which is suitable for infrastructure-as-code or pipeline deployments whereby the Admin doesn't want to create an Agent registration key prior to deployment and registration. As an ...

Grant duration

Admin Guide Access

Users are assigned a default "grant period" (in minutes), either within Knocknoc for local users, or passed as a SAML attribute through "sessionDuration".  These can be overridden per-Knoc, allowing certain access paths to have shorter periods if so desired. F...

v8.0

Changelog and Roadmap

Knocknoc 8.0 Knocknoc 8.0 delivers a powerful set of updates, enhancing validation on connecting clients beyond just source IP addresses through the introduction of Knocknoc Access Tokens for web transactions. Additionally, fine-grained per-Knoc session limits...

Knocknoc client (scriptable login)

Admin Guide Setup guides

To gain access to underlying networks and systems, end-users  log in to Knocknoc interactively via the Server component. This provides registered orchestration-Agents information to perform ongoing access provisioning. If you need to script access in a non-int...

HAProxy + KAT

Admin Guide Knocs (backends)

Sometimes IP address restrictions or IP-based allowlisting is not enough, think: airport lounge, CGNat or other large, untrusted NAT environments. That's why Knocknoc extends a reverse-proxy in an innovative way through the addition of Knocknoc Access Tokens. ...

FortiManager

Admin Guide Knocs (backends)

The FortiManager is used to manage multiple Fortinet devices, including Fortigate firewalls, APs, switches and more. Utilizing Knocknoc with FortiManager local-in access controls can be applied, limiting exposure to Admin login source addresses dynamically. Tr...

VPNs, internal addresses and access

Admin Guide Access

You may want to limit the ability to access a Knoc, depending on where your user is logging in to Knocknoc from.  For example, an internal subnet should only be opened up if the user is connecting from an internal IP address range, or if they are connected to...

v8.5

Changelog and Roadmap

Knocknoc 8.5   Knocknoc 8.5 delivers key improvements in usability, integrations, and security, while paving the way for future growth. Security is enhanced through updated server components, Golang and library upgrades, and additional hardening measures, incl...

Redirecting Users

Admin Guide Access

Knocknoc supports two ways to redirect the user to a specific site from the Knocknoc Dashboard. The first way is to redirect from a parameter in the URL used to access the Dashboard, the second is to have a user automatically redirect when logging in with a si...

New Page

Admin Guide Setup guides

BYO PostgreSQL

Admin Guide Setup guides

Knocknoc server v8.5+ installs with a local installation of PostgreSQL by default. However, you may bring your own PostgreSQL instance (such as AWS RDS, Azure Database for PostgreSQL or a local cluster) by choosing to enter an alternate database connection str...

Sophos (UTM)

Admin Guide Knocs (backends)

The Sophos UTM device provides firewall and UTM capabilities. Note that this series of devices is being EOL'd by Sophos in favor of the SFOS devices (June 2026), which can also be integrated with Knocknoc following this guide. UTM Configuration Firstly create...

Sophos (SFOS/XGS)

Admin Guide Knocs (backends)

The Sophos SFOS/XGS based devices provide advanced firewall and UTM capabilities. This replaces the previous UTM devices, which can be integrated here. Knocknoc manages IP addresses within a host-group, it does not edit/change firewall policies, and operates w...

Agent as a Reverse Proxy

Admin Guide Setup guides

The orchestration agent can be configured to reverse-proxy traffic, simply by enabling this mode and completing a few configuration options, you'll be on your way to controlling HTTPs or TCP attack surface, without an additional firewall or other layer beyond ...

Package Repository Key expired

Admin Guide Troubleshooting

Debian distros (Ubuntu etc) If you are getting this error: Failed to fetch https://packages.knocknoc.io/debian/dists/bookworm/InRelease The following signatures were invalid: EXPKEYSIG E3AB5DF76BBF701F Knocknoc Support <support@knocknoc.io> You may have the o...

v25.12

Changelog and Roadmap

Knocknoc 25.12 Knocknoc 25.12 is a Windows-first release focused on making Just-In-Time (JIT) access easier to deploy and operate across Windows environments. The headline upgrade is the Windows Agent now managing the local Windows Firewall for true on-host ne...