
— INTRODUCING VSN+
VIRTUAL SECURE NETWORK
CONNECT EVERYTHING.
CONTROL ALL OF IT.
TRUST NOTHING.
One platform. Any site. Any user. Any device.
Augment your existing WAN with modern encrypted overlay
networking — deployed in hours, not months.
50–70%
Cost Savings VS MPLS
<100ms
WAN Failover Speed
0 hrs
To deploy any site
10 Gbps+
Enterprise Output

AUGMENTING LEGACY WAN WITH MODERN ENCRYPTED NETWORKING
VSN+ is a software-only platform that layers intelligent SD-WAN on top of your existing MPLS circuits and legacy VPN hardware — boosting performance and cutting costs, running on commodity x86.
Software-only Platform
No proprietary appliances. Runs on any commodity x86 hardware, cloud VMs on AWS, Azure & GCP — all from one dashboard.
Powered by VPP
Vector Packet Processing — the same engine powering Cisco SD-WAN. Processes packets in batches for dramatically higher throughput.
Deploy Anywhere
Mini-PCs for branches. Rack-mount servers for data centers. Cloud VMs. All managed under a single pane of glass.
THE METRICS THAT CHANGE EVERY CONVERSATION
50–70%
Cost Savings VS MPLS
Broadband + encrypted overlay vs dedicated circuits. Real dollars back in your budget.
<100ms
DPS Failover Speed
​
Proactive WAN quality monitoring. Automatic failover across fiber, LTE/5G, and satellite.
0 hours
Site Deployment Time
​
Zero-touch provisioning, MPLS takes 4-12 week. We do it today,
10+
Tenants per MTGE
​
Full VRF isolation. Competitors need one appliance per customer. You need one.
10 Gbps+
Enterprise Throughput
​
DPK line-rate performance on bare metal with Intel NICs.
3
VPN Protocols
​
WireGuard · IKEv2 · IPSec. Most rivals offer just one or two.
FIVE INTEGRATED COMPONENTS WORKING TOGETHER
Every component purpose-built for its role. Every component tightly integrated with the rest. One dashboard controls everything.

VSM Dashboard
​
Single-pane-of-glass management. Real-time monitoring & full audit trail.

Edge Appliance
​
Full SD-WAN per site. Prime (~3 Gbps) or Enterprise (10 Gbps+).
MTGE Gateway
​​
Multi-tenant shared gateway. VRF isolation. One device, 10+ customers.


Connector
​​
Lightweight Linux edge. No VPP needed. Ideal for small branches and retail.
VSN+ VPN App
​​
iOS, macOS, Android, Windows. WireGuard & IKEv2. Keycloak SSO included.

SECURITY ARCHITECTURE
Every layer hardened. Every connection authenticated. Every tenant isolated.
01
Zero Trust Policies
Default-deny per device group.
ACL+ABF enforcement at VPP data plane.
02
Mutual TLS (mTLS)
MQTT control plane with mTLS.
Unique X.509 cert per edge device.
03
IPIFIX
Per-flow visibility via Grafana, VictoriaMetrics & Loki.
04
VRF Tenant Isolation
Zero cross-tenant visibility. Dedicated NAT per tenant on MTGE.
05
SSH Certificate CA
Short-lived scoped certs. Bastion jumphost. Automated rotation.
​
06
Inline IDS/IPS
Suricata in VPP service chain.
Active blocking — not mirror/tap.

FLEXIBLE TIERS FOR EVERY USE CASE
VSN+ Prime
Branch & VM
___________________________________
​​
~3 Gbps
Any x86 • Cloud VMs
___________________________________
​✓ AF_PACKET dataplane
✓ WireGuard · IKEv2 · IPSec
✓ Dynamic Path Selection <100ms
✓ BGP/BFD ~900ms failover
✓ Zero-touch provisioning
✓ Business Continuity Add-On eligible
✓ Compliance Pack eligible
MOST POPULAR
VSN+ Enterprise
HQ & Data Centers
___________________________________
​​​
10 Gbps+
Bare metal • Intel NICs
___________________________________
✓ DPDK kernel-bypass dataplane
✓ Everything in Prime
✓ Uncapped VPN App Server
✓ Advanced Security Pack eligible
✓ IoT Gateway eligible
✓ Business Continuity Add-On eligible
✓ Compliance Pack eligible
Shared MTGE
MSP & Wholesale
___________________________________
​​​
10+ Tenants
Data center hosted
___________________________________
✓ VRF-isolated per tenant
✓ 10x fewer devices vs competitors
✓ Per-tenant NAT & routing
✓ Internet breakout per tenant
✓ Connector or VPN App access
✓ MSP margin engine
✓ Dedicated support channel
EXPANDABLE CAPABILITIES,
ZERO DOWN TIME ACTIVATION
Activate via dashboard. No re-deployment. No downtime.
Enterprise
Advanced Security Pack
Inline IDS/IPS via Surica1a in the VPP se1Vice chain. Active threat blocking - not a mirror tap. Managed threat intel feeds updated daily/hourly.
Enterprise
IoT Gateway
​
Secure IoT ingestion via dedicated tunnels. Full device isolation from corporate traffic. Encrypted telemetry backhaul to cloud analytics platforms.
Prime/Enterprise
Business Continuity
Dual-WAN SD·WAN bonding wilh DPS quality monitoring. Sub-second failover: BFD (~900ms detection) + DPS steering (<1ooms reroute).
Prime/Enterprise
Compliance Pack
Extended metric and log retention for financial and regulatory mandates. Automated monthly audit reports: admin access, SSH rotation, config history.
WHY VSN+ WINS
EVERY COMPARISON
50–70%
CAPEX Reduction
Augment MPLS with broadband + encrypted overlay on commodity hardware.
<100ms
DPS Failover
​
Proactive path steering before links fail. Users never notice the switch.
10+
Tenants per Gateway
True VRF isolation. Competitors need one appliance per customer.
0 hours
Site Deployment
​
Zero-touch provisioning. MPLS takes 4–12 weeks. VSN+ does it today.
3 Gbps
Branch Throughput
​
Software-only on basic x86. No hardware accelerators required.
0
Vendor Lock-In
​
Standard Linux. Own your hardware. Switch providers anytime.
TOTAL VISIBILITY

ZERO COMPROMISE


UNIFIED CONNECTIVITY

— MAXIMIZE YOUR WAN INVESTMENT
YOUR MPLS, SUPERCHARGED
VSN+ doesn’t replace your MPLS — it augments it. Layer intelligent SD-WAN on top of your existing circuits to boost performance, add resilience, and cut costs without a forklift upgrade.
REQUEST A FREE DEMO NOW
