11 lines
411 B
Markdown
11 lines
411 B
Markdown
---
|
|
title: Egress proxy
|
|
sidebar_position: 1
|
|
---
|
|
|
|
# Egress proxy
|
|
|
|
Optional outbound credential-injection firewall for remote terminal sandboxes. The sandbox only ever holds opaque proxy tokens; real API keys never leave the host.
|
|
|
|
- [iron-proxy](./iron-proxy) — single-binary TLS-intercepting proxy from [ironsh/iron-proxy](https://github.com/ironsh/iron-proxy), lazy-installed and managed by `hermes egress`.
|