Identity & Access
Secure Remote Access VPN/ZTNA
Secure access to internal systems for users outside the office. A classic VPN puts the user on the whole network; ZTNA (Zero Trust Network Access) connects them only to the applications they are authorized for, after checking device health.
When you need it
- If employees connect to internal applications (ERP, file server) from home
- If suppliers or outsourcing firms access your systems remotely
- If RDP or applications are exposed directly to the internet today (urgent)
When you do not need it
- If all your applications are SaaS (M365, Salesforce, etc.), you do not need a VPN; MFA and conditional access are enough.
- For a few IT staff, the firewall's built-in VPN + MFA is enough; no separate product is needed.
VPN on the firewall; ZTNA as a cloud broker + a connector in the internal network. Supplier access must always be application-based and logged.



