Disable a VPN gateway
Takes the terminator down and revokes every device registered against it. Refused with 422 while site-to-site connections still terminate on it — remove those first. Disabling a site-to-site gateway is what returns its public IPv4 to the region’s pool; removing the last connection stops the charge but does not free the address.
Authorizations
Bearer token for authentication. Format: 'Bearer {token}'
Headers
Workspace ID (uses default workspace if not provided)
Response
Disable a VPN gateway
Api_V1_Entities_VpnGateway model
Unique gateway identifier
Terminator: wireguard, tailscale, cloudflare or ipsec
Current status (pending, active, failed, disabling)
Address clients dial, once the platform has allocated one. Null for the terminators that dial out instead
Port on that address, for WireGuard
Public IPv4 held exclusively by this gateway. Only IPsec takes one
Devices registered against this gateway
Site-to-site tunnels terminating on it
Creation timestamp

