Skip to main content
A box that runs a web app, a dev server, or an SSH daemon is only useful once something can reach it. On BoxLite Cloud you ask a box for a tunnel to one of its ports, and that tunnel gives you a public URL and a byte stream. What the box itself may reach on the way out is a separate control. Two rules hold across everything here:
  • Your service must bind 0.0.0.0. A tunnel arrives on the box’s network interface, so a server on 127.0.0.1 inside the box is unreachable.
  • A tunnel carries exactly one connection. Ask for a fresh one per request, per retry, and per concurrent client.

In this section

How tunnels work

The concept, the one-shot rule, what a tunnel is verified to carry, and the full parameter reference. Start here.

Serve HTTP

Start an HTTP server inside a box, get its public URL, and make a request over it.

Port forwarding

Publish a box port on your own machine so curl, a browser, or a database driver can dial it.

Raw streams

Take the byte stream directly when you are speaking a protocol of your own.

Network policy

Who can reach a box — public, private, signed URLs — and the egress allowlist that bounds what it reaches.

Which page do I want?