Documentation
Configure ShieldGate with confidence
A learning-friendly path from first install through WAF proxy controls and the network firewall appliance plane. Follow the curriculum in order, or jump to the feature you need.
-
What is ShieldGate
Planes, tenancy, and how control, proxy, and appliance work together.
-
Prerequisites
Tools and services you need before a local or container install.
-
Local install
Apply migrations and run Api, Web, Worker, and Proxy on your machine.
-
Docker Compose quickstart
Bring up Postgres, Redis, Api, Proxy, and Worker with Compose.
-
First login
Sign in with the seeded admin and orient yourself in the console.
04
Network firewall
10 topics
-
Network firewall overview
Appliance plane, permissions, console sections, and how network config differs from WAF.
-
Zones and L2
Zones, interfaces, VLANs, and bridges on the appliance plane.
-
Addresses and routing
Interface addresses, static routes, and ECMP groups.
-
Firewall rules
Zone-based stateful firewall policy on appliances.
-
NAT and PBR
SNAT, DNAT, masquerade, and policy-based routing.
-
VPN tunnels
WireGuard and IPSec tunnel configuration for the appliance plane.
-
Services (DHCP and DNS)
DHCP scopes and DNS forwarders via the Service Manager.
-
Dynamic routing
OSPF areas and BGP neighbors (MVP config + FRR hooks).
-
WAN and QoS
SD-WAN policies and QoS (tc) policies for path and bandwidth control.
-
Publish, HA, and settings
Network publish/rollback, clusters, monitoring, and appliance settings.
07
Gateway & identity
4 topics