1

Put your application behind the Anapaya EDGE

The application is placed behind Anapaya EDGE, on premises or in the cloud, with a PathGuard Gateway in front of it. The gateway terminates
the connection, acting as a VPN termination
point or an HTTP reverse proxy, so the
application backend itself does not need to
be modified.

2

Register your private paths and access policy

Private paths to the application are registered together with an access policy that defines who is allowed to use them. This is where you decide which users can reach the service. Everyone outside that policy is simply never given a path.

3

Approved users connect

Users authenticate and, if the access policy allows it, receive the path information they need to reach the service. Anyone who does not authenticate receives nothing, so there is no
route to your infrastructure and no traffic can
be sent to it.