bdy agent tunnel tls

$bdy agent tunnel tls|TLS [options] [host:port]

Starts a tunnel listening for TLS traffic on port 443 with a specific hostname.

ARGUMENTS
host:port
Target address to redirect traffic to. Host is optional and by default local machine. Port is by default 80 (optional)
OPTIONS
-r, --region <region>
override default region ("eu", "us", "as")
-w, --whitelist <cidrs...>
Whitelist provided IP CIDRs. Use "*" to allow all
-n, --name <name>
Name of the tunnel
-t, --timeout <seconds>
Enforce connection timeout in seconds
-k, --key <key>
Path to a TLS key
-c, --cert <cert>
Path to a TLS PEM certificate
--ca <ca>
Path to a TLS PEM CA certificate for TLS auth
-i, --terminate <at>
Terminate TLS at "target", "agent", "region". By default TLS is terminated at "region"
-f, --follow
Follow tunnel details
-h, --help
display help for command

Documentation for bdy v1.20.0

Last modified on Apr 13, 2026

Examples

Start tls tunnel on port 80
bdy agent tunnel tls 80$
Start tls tunnel and terminate tls at target
bdy agent tunnel tls 443 -i target$