Documentation

Troubleshooting

Common issues when running the self-hosted Tiresias-ZT proxy, and where to get help. Most fall into a few predictable buckets.

The complete guides for the current release are published at admin.tiresias.network, user.tiresias.network, and quickstart.tiresias.network. Administer your deployment from the admin portal.

Quick checks

Most issues in the current release fall into a few buckets:

  • Denied requests — check the decision's deny reason in the audit log; policies are deny-by-default, so a missing allow rule is the most common cause
  • Quarantined agents — SoulWatch may have flagged anomalous behavior; review and release from the portal
  • Budget blocks — the cost governor stops traffic when a tenant budget is exhausted
  • Sovereignty denials — never-cloud content is not readable from cloud instances by design

Getting help

Email support@saluca.com with your tenant ID and the relevant audit entry IDs. Design partners have a direct line to the engineering team.