Skip to content →
Log in

Services

Publish a private application through reachable gateways.

Publish an application#

  1. Open Network → Services → Add Service.
  2. Enter a recognizable name.
  3. Choose CIDR, Hostname, or Gateway Host and provide the destination.
  4. Set protocol and port. Gateway Host supports TCP and requires a port.
  5. Configure an optional health probe.
  6. Assign gateways that can reach the destination and create the service.

At least one service must be selected in an access policy. DNS names provide private service discovery when Settings → DNS is enabled; they are unrelated to Secure Web filtering.

Health and gateway states#

Unmonitored means no probe is configured, not that access failed. Stale or unknown samples are not current proof of health.

If a service references a revoked gateway, edit the service, remove that gateway, and save. Do not rely on revocation to clean up assignments.