Console Management
Manage your tunnel from the Zihin Console at Management → Connectivity. All operations require an admin or owner role.
Creating a tunnel
Each organization has one tunnel, covering all on-premise services reachable from your network.
- Click Create Tunnel
- Enter a label (e.g., your company or site name)
- Copy the generated token (
ztun_...) — it is shown only once
The tunnel appears as Disconnected until the agent connects. Use the token to configure the agent.
Monitoring status
| Field | Description |
|---|---|
| Status | Connected (agent online) or Disconnected |
| Token | Masked identifier (e.g., ztun_a1b2c3...d4e5) |
| Agent version | Version of the connected agent |
| Services | Services registered by the agent (e.g., crm, erp) |
| Connected since | When the agent last connected |
Rotating the token
- Click Rotate Token and confirm
- Copy the new token
- Update the agent within 24 hours — during that window both tokens are accepted (see Token rotation)
The Console shows a "Rotation in progress" indicator until the grace period ends.
Revoking a tunnel
Revoking immediately disconnects the agent and invalidates the token. This cannot be undone.
- Click Revoke and confirm by typing the tunnel label
- To reconnect later, create a new tunnel and reconfigure the agent with the new token
Permissions
| Role | View | Manage |
|---|---|---|
| Owner | Yes | Yes |
| Admin | Yes | Yes |
| Editor | No | No |
| Member | No | No |