Zones
Zones
Group devices into logical network zones for policy targeting.
Zones (/zones) are logical groupings of devices within your organization. A zone defines a shared network context — entry point, allowed IP ranges, DNS servers, and access controls — that all member devices inherit.
Adding a Zone
Click Add Zone to open the create form. The form loads device tags and zone tags in parallel so you can define selectors immediately.
Filtering
| Filter | Description |
|---|---|
| Device tags | Show zones whose device selectors match these tags |
| Zone tags | Filter zones by their own assigned tags |
Filter state is encoded in URL search params.
Table Columns
| Column | Description |
|---|---|
| Title | Zone name |
| Tags | Labels assigned to the zone |
| Entry Point | Gateway devices use to connect to this zone |
| Allowed IPs | CIDR ranges reachable from within the zone |
| DNS Servers | DNS resolvers assigned to devices in this zone |
| Device Selectors | Tag expressions that determine which devices belong to the zone |
| Entry Point Selector | Tag expression that identifies the zone's entry point device |
| Force QS Channel | Whether quantum-safe tunneling is enforced for all zone traffic |
| Session Duration | Maximum authenticated session length for zone members |
| Auth Required | Whether identity verification is required to join the zone |
| Created / Updated | Timestamps and acting user |
Related
- Zone Detail — view and manage an individual zone
- Devices — manage the devices assigned to zones
- Policies — apply policies scoped to zones
How is this guide?
Last updated on