LogoThreatmatic
Zones

Zones

Group devices into logical network zones for policy targeting.

Zones (/zones) are logical groupings of devices within your organization. A zone defines a shared network context — entry point, allowed IP ranges, DNS servers, and access controls — that all member devices inherit.

Adding a Zone

Click Add Zone to open the create form. The form loads device tags and zone tags in parallel so you can define selectors immediately.

Filtering

FilterDescription
Device tagsShow zones whose device selectors match these tags
Zone tagsFilter zones by their own assigned tags

Filter state is encoded in URL search params.

Table Columns

ColumnDescription
TitleZone name
TagsLabels assigned to the zone
Entry PointGateway devices use to connect to this zone
Allowed IPsCIDR ranges reachable from within the zone
DNS ServersDNS resolvers assigned to devices in this zone
Device SelectorsTag expressions that determine which devices belong to the zone
Entry Point SelectorTag expression that identifies the zone's entry point device
Force QS ChannelWhether quantum-safe tunneling is enforced for all zone traffic
Session DurationMaximum authenticated session length for zone members
Auth RequiredWhether identity verification is required to join the zone
Created / UpdatedTimestamps and acting user
  • Zone Detail — view and manage an individual zone
  • Devices — manage the devices assigned to zones
  • Policies — apply policies scoped to zones

How is this guide?

Last updated on

On this page