Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Home
  • Knowledge base
  • Contact Us
  • Home
  • Edge Portal (Next-gen)
  • Tools

zrok

Install, configure, start, stop, and update a zrok remote-access share from the Edge Portal.

Written by Mads Mikkelsen

Updated at September 10th, 2026

Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Installation & Technical information
    Introduction SIA Connect Standalone SIA Connect Standalone Plus SIA Connect ANY-Ware Cellular & WiFi connectivity
  • Edge Portal (Next-gen)
    Getting started with the Edge Portal Workspace Configuration Instances Data Interfaces Tools
  • Connectors
    Industrial Connectors Databases Cloud Connectors
  • Scripting & Variables
    Data formatting Advanced Data Processing
  • Developers
    API documentation Shadow API
  • Tutorials & Guides
    InfluxDB AWS IoT Core - Amazon Web Services Microsoft Power BI KaaIoT Siemens S7 AVEVA Insight SIA Connect Demo Rack Grafana Notification & Messaging Azure Cumulocity MQTT MS SQL OPC-UA Server
  • General
  • Configuration in the Edge Portal (legacy)
    Getting started with the UI Connectors Instances Items Mapping Data System Network Tools & Add-ons DigiCert IoT Trust Manager Remote Access & VPN tunneling
+ More

Table of Contents

Before you begin Open the zrok settings Understand the status Configure the zrok share Install and start zrok Open the remote share Stop the zrok share Start a stopped share Update the zrok client Troubleshoot zrok Related articles

Articles in this section:

  • Ping tool
  • DigiCert ONE IoT Trust
  • Set up the Shadow API
  • Containers
  • Tosi
  • Netbird
  • zrok
  • Secomea SiteManager

zrok creates a remote-access share for the local SIA Connect service. When the share is running, the Edge Portal displays a Current URL that you can open in a browser.

The Edge Portal installs and controls the zrok client for you. You only need to provide a zrok account token and, when applicable, the API endpoint for a self-hosted zrok service.

A zrok share provides remote access to the gateway service. Protect the account token and Current URL, and stop the share when remote access is no longer required.

 

 

Before you begin

Prepare the following:

  • A zrok account token.
  • Internet and DNS access from SIA Connect when using the hosted zrok service.
  • The API endpoint when your organization uses a self-hosted zrok service.

For the hosted service, create an account and obtain the token by following Get an account token in the official zrok documentation.

Treat the account token like a password. It authenticates the gateway with the zrok service.

 

Open the zrok settings

  1. Sign in to the Edge Portal.
  2. Expand Tools in the sidebar.
  3. Select Remote Access.
  4. Find the Zrok card.

The card shows the installed client version, API endpoint, Current URL, status, and the actions available for the current state.

 

Understand the status

Status Meaning
Checking The Edge Portal is retrieving the current zrok state.
Not installed The zrok client is not installed on the gateway.
Stopped The zrok client is installed, but no share is currently active.
Running The zrok share is active and has returned a Current URL.
Error zrok reported an error. The card displays the returned error details when available.

 

Configure the zrok share

Parameter Required Description
API endpoint Only for self-hosted zrok Enter the API address of your self-hosted zrok service. Leave this field empty when using the hosted zrok service.
Account token Yes The token used to authenticate the gateway and start the share. Use the visibility control to show or hide the entered value.

The Edge Portal automatically configures the share target as localhost. There is no separate target field on the zrok card.

 

Install and start zrok

  1. If you use a self-hosted service, enter its API endpoint. Otherwise, leave the field empty.
  2. Enter the Account token.
  3. Select Install zrok.
  4. Keep the page open while the client is installed and configured.
  5. Wait for the card to show Running.
  6. Confirm that the card displays a valid Current URL.

A successful first installation displays zrok has been installed and configured successfully. If the client was already installed, the Edge Portal can instead display zrok was already installed and is now configured.

The Account token field is cleared after a successful operation.

 

Open the remote share

  1. Confirm that the status is Running.
  2. Select the link displayed under Current URL.
  3. Confirm that the shared SIA Connect service opens in the new browser tab.

A working Current URL confirms that the zrok share was created. Access can still depend on browser, account, or service restrictions outside the Edge Portal.

 

 

Stop the zrok share

  1. Select Stop zrok share.
  2. Select Stop zrok share to confirm.

Stopping the share disconnects the active remote-access connection. A successful stop displays Zrok share stopped successfully. The card then changes to Stopped.

 

Start a stopped share

  1. Review the saved API endpoint. Leave it empty for the hosted service.
  2. Enter the Account token again.
  3. Select Start zrok share.
  4. Wait for Zrok share started successfully.
  5. Confirm that the status changes to Running and a Current URL is displayed.

 

Update the zrok client

  1. Select Update zrok client.
  2. Review the update confirmation.
  3. Select Update client.
  4. Wait for the update operation to finish.

The Edge Portal displays zrok client updated successfully. when an update is installed. If no update is required, it displays zrok is already up to date.

The Remote Access page does not provide an action for uninstalling zrok.

 

Troubleshoot zrok

Message or condition What to do
Account token is required. Enter the zrok account token before installing or starting the share.
Unable to read zrok configuration. Confirm that the Edge Portal can communicate with the gateway, refresh the page, and try again.
zrok error: [message] Use the displayed zrok message as the first troubleshooting step. Check the account token, API endpoint, internet connection, and DNS settings.
Failed to install zrok. Check internet access and confirm that the gateway can reach the zrok service. Verify the account token and self-hosted API endpoint, then retry.
Failed to start zrok share. Enter a current account token and confirm that the saved API endpoint is correct. Review any more specific message returned by the gateway.
Failed to stop zrok share. Refresh the card to check whether the share is still running, then retry the stop action.
Failed to update zrok client. Check internet and DNS access, then run the update again. Review the system logs if the error continues.
The status is Running, but the Current URL does not open Confirm that the displayed address is a valid HTTP or HTTPS URL. Check internet access, browser restrictions, and the zrok service status.

Use the Ping tool to test whether SIA Connect can reach an IP address or hostname. If the problem continues, review the system logs for the time when the zrok action failed.

 

Related articles

  • Introduction to the Edge Portal
  • Change network settings in the Edge Portal
  • Use the Ping tool
  • Understand Edge Portal notifications
  • Configure and review system logs
edge portal remote access zrok account token self-hosted

Was this article helpful?

Yes
No
Give feedback about this article

Related Articles

  • Ping tool
  • DigiCert ONE IoT Trust
  • Set up the Shadow API
  • Containers
  • Tosi

0
0
Expand