ShieldGate Docs

Advanced

ZTNA

Zero-trust application access with claims and optional peer binding.

Goal

Restrict routes to identities that satisfy ZTNA policies.

Steps

  1. Open Advanced → ZTNA.
  2. Define applications and policies (claims/groups as supported).
  3. Bind policies to routes.
  4. Optionally require client certificate or tunnel peer where configured.
  5. Publish and test with allowed vs denied identities.

Verify

  • Authorized identity reaches upstream.
  • Unauthorized identity is denied at the edge.

Note

ZTNA complements gateway authentication; design both together.