Skip to main content
Version: 1.19.0 (latest)

Kasm Workspaces Documentation

Enterprise Access without Putting Untrusted Devices on Your Network

Security-focused organizations increasingly need to give employees, contractors, partners, and unmanaged devices access to enterprise resources without creating unnecessary network exposure.

Access the Resource, Not the Network

Kasm Workspaces provides browser-delivered access over HTTPS and WebSockets and can broker connections to remote systems using protocols such as RDP, VNC, SSH, and KasmVNC.

Applications, desktops, and browsers can run in isolated Kasm-hosted environments or on systems accessed through Kasm, while the user interacts with the session through a browser. This approach reduces operational overhead and limits exposure by removing the need for direct network access from the endpoint.

The architecture supports a practical Zero Trust access model by limiting direct endpoint-to-resource connectivity and applying centralized access controls.

Built for Enterprise Adoption

Deploy alongside your existing identity, security, logging, and infrastructure investments. Validate Kasm against your requirements before migrating production workloads. This provides a phased path to modernize remote access while maintaining control over architecture, policy, deployment, and change management.

Start With One Access Problem

Enterprise access can create risk in two directions. Kasm Workspaces provides a controlled session boundary for both scenarios while supporting productivity and reducing operational complexity.

Choose the access direction that matches your security requirements, validate it with a defined user group, then extend the same session architecture to additional workloads.

Inside-Out Access
Protect users from untrusted destinations

High-risk websites and applications run inside isolated environments instead of executing directly on the user's local device. The session is discarded when the user is finished.
Outside-In Access
Protect enterprise resources from untrusted devices

Contractors, partners, BYOD users, and remote employees can interact with authorized resources through a browser while the endpoint remains separated from the protected environment.

Expand on the Same Platform

Kasm Workspaces consolidates secure access, workspace delivery, browser isolation, and AI access on a single Zero Trust platform. Start with the access requirement that matters most today, validate the outcomes, and expand to additional use cases on the same platform.

Additional solutions, deployment patterns, and technology partner integrations are available at Kasm Insights.

Remote Desktops (VDI)
Outcomes: Deliver managed desktops through the browser while reducing persistent per-user infrastructure and simplifying provisioning and patching.
Secure Remote Access
Outcomes: Provide contractors, partners, and remote users access to approved resources without extending network-level access to unmanaged devices.
Application Streaming
Outcomes: Provide controlled access to approved applications without requiring endpoint installation or exposing the underlying application environment.
Non-Attributable Research
Outcomes: Reduce the risk of exposing analyst identity, endpoints, or organizational infrastructure during sensitive OSINT research.
Remote Browser Isolation
Outcomes: Reduce endpoint exposure to untrusted web content while maintaining access to the websites users need.
Public/Private AI Sandbox
Outcomes: Enable approved AI use while maintaining control over access, sensitive data, and audit requirements.

Independently Verified for High-Compliance Environments

Kasm Workspaces is supported by production deployments, security validation, commercial support, and a growing technology ecosystem that helps organizations integrate secure workspace delivery into existing infrastructure.

Proven in Production
Organizations use Kasm Workspaces to modernize workspace delivery while integrating with existing cloud, endpoint, and identity investments. The City of Hamina uses Kasm as part of its Google Workspace, GCP, ChromeOS, and Chrome Enterprise environment.

Read the Hamina customer story
Validated for Regulated Environments
Kasm Technologies has achieved CMMC Level 2 certification, providing independent validation of its security practices for protecting Controlled Unclassified Information (CUI) and supporting organizations within the Defense Industrial Base.

Review compliance and security validation
Built to Fit Existing Infrastructure
Kasm works with established infrastructure, cloud, endpoint, virtualization, and security platforms so organizations can introduce secure workspace delivery without rebuilding their environment. Alliance relationships include Google Cloud, F5, Nutanix, IGEL, Everfox, Proxmox, and Rancher Government Solutions.

Explore technology alliances
A Growing Technology Ecosystem
Kasm Technologies participates in technology validation programs designed to reduce integration risk, including Nutanix Ready validation for the Nutanix Kubernetes Platform and availability of the Kasm PWA through the IGEL App Portal.

Explore validated integrations

Choose the Right Kasm Solution

Kasm Technologies offers two purpose-built solutions.

Kasm Workspaces is the complete managed platform for organizations that need centralized identity, policy, orchestration, lifecycle management, scale, and commercial support. KasmVNC is the streaming component for organizations prepared to provide their own orchestration and operational framework.

Help and Support Resources

Support is part of the product, not an afterthought. Whether you are evaluating the platform, preparing a production deployment, or troubleshooting a live environment, start with the resource that matches what you are trying to accomplish.

The Kasm Customer Support team and community resources are available to help your organization deploy and operate the Kasm Workspaces platform successfully.

How This Documentation Is Organized

This documentation uses the Diataxis structure to help you find exactly what you need. Use these resources for evaluating, deploying, securing, integrating, scaling, and maintaining your environment.