Every tunnel needs named ends.
MobaXterm supports SSH gateways for several session types and provides a graphical tunnel manager. We turn the diagram into an owned route with explicit local, gateway, and destination endpoints.
Drawing 03 · Gateway boundaries
Home / Gateways
MobaXterm supports SSH gateways for several session types and provides a graphical tunnel manager. We turn the diagram into an owned route with explicit local, gateway, and destination endpoints.

| Pattern | Question to answer | Typical test |
|---|---|---|
| Gateway / jump host | Which boundary must be crossed first? | Destination reachable only through approved gateway |
| Local forwarding | What local listener reaches which remote service? | Local endpoint resolves to intended destination |
| Remote forwarding | Who is allowed to expose the reverse path? | Explicitly authorized remote listener |
| Dynamic forwarding | Which applications may use the proxy route? | Scoped client behavior and teardown |
No unnamed arrows.
Each boundary has an accountable team.
Test connect, failure, reconnect, and teardown.
Publish purpose and expiry assumptions.