TYO Reach documentation
TYO Reach is a lightweight gateway that routes only the browsers, apps and domains you choose through the exit you pick — Singapore, Hong Kong, Taiwan, Europe, US-West or Australia — and leaves everything else on your normal connection. Teams get one static egress IP to whitelist, policy pushed from a dashboard, and identity-based access to specific machines and cloud servers.
New here? Start with Getting started, then pick a platform under Install. Everything else is grouped below.
Getting started
Install on every platform, sign in, switch it on.
Routing & rules
Decide exactly which browsers, apps and domains go through Reach.
Gateways & connectivity
Pick an exit region, stay connected on restricted networks, manage your allowance.
Remote access
Share a PC, attach to your own terminal sessions, reach cloud servers by identity.
Use Reach with…
Point one browser, a terminal, Docker or any app at the local proxy.
For Business
Set up a team, push policy, whitelist one static IP, connect your cloud firewall.
CLI reference
Every reach subcommand, with examples.
Troubleshooting
Fixes for the errors people actually hit.
Account & billing
Plans, allowances, user types.
Knowledge base
How Reach differs from a VPN and other explainers.
Cloud access
Google Cloud IAP, AWS Session Manager and Azure Bastion — explained, set up, compared.
Help
Quick answers.
Popular
- Install on Windows · macOS · Linux · Android · iPhone & iPad
- Using Reach in mainland China — what to install before you go and which region to pick.
- Proxy modes: Rules, Direct, Global and Domain rules — decide exactly what gets routed.
- Use Reach with any app — the local HTTP and SOCKS5 proxy for curl, git, Docker and more.
- Share this PC, Reach Sessions, Remote Targets on Google Cloud.
- Set up your team, Access policy, Members & devices, TCP forwards.
- Cloud firewall automation for Google Cloud, AWS, Azure, Cloudflare — and allowlist guides for Salesforce, the AWS console, GitHub, Atlassian, Microsoft 365, Google Workspace.
- Cloud access explained: What is Google IAP?, What is AWS Session Manager?, What is Azure Bastion?, IAP vs SSM vs Bastion.
- Troubleshooting — one page per symptom, e.g. "gateway unavailable", RDP 0x904, AADSTS5000611 — and the FAQ.