
Secure your organization from costly data breaches while meeting essential compliance requirements, such as ISO 27001, GDPR, and HIPAA. Our software-based VPN solution is easy to deploy alongside your existing systems, giving you a powerful and adaptable tool for securing your enterprise network.
Our VPN Professional plan allows your team to connect securely to your local networks and cloud-based services. And with granular segmented control over who can connect to dedicated VPN servers and Gateways (logical groupings of dedicated servers), you can ensure your staff can access the resources they need (but only what they need).
All of our business plans use robust industry-standard AES-256 or ChaCha20 encryption to ensure your data remains secure. You can further strengthen your organization's security with enforced two-factor authentication (2FA) and seamless login through single sign-on (SSO) with SCIM support for automated user provisioning.
Our global high-performance (mainly 10 Gbps) server network is one of the largest in the world, and is part of the trusted Proton ecosystem — a suite of fully open source, end-to-end encrypted services built by the creators of Proton Mail and designed specifically to keep your business secure.
Learn more
FusionAuth is the authentication and authorization platform engineered for developers who demand flexibility and control. Built from the ground up to integrate with any stack, every feature — from user registration to MFA and SSO — is exposed via a modern, well-documented API.
Support for every major identity protocol is included out of the box: OIDC, SAML, OAuth2, JWT, passwordless login, social sign-on, and more. Whether you’re building a greenfield app or retrofitting auth into a legacy system, FusionAuth adapts to your use case — not the other way around.
Need compliance? FusionAuth helps you meet GDPR, HIPAA, and COPPA standards quickly and reliably.
Deploy it your way: install on Linux, Windows, macOS, Docker, or Kubernetes — or go with FusionAuth Cloud, our managed SaaS hosting. No black boxes. No vendor lock-in. Just powerful, customizable auth that works the way you do.
Learn more
Activate IAM
Activate IAM serves as a comprehensive Enterprise Identity Operations platform that streamlines the automation of identity approvals, provisioning, fulfillment, and lifecycle modifications across various systems, including Microsoft Entra, Active Directory, ServiceNow, and other enterprise applications. By effectively managing the operational activities initiated by identity changes—such as joiner, mover, and leaver (JML) processes—Activate facilitates business and IT approvals, provisioning, deprovisioning, and fulfillment across an array of systems. This platform is specifically designed to complement existing identity management solutions, enabling the execution of identity and access decisions through automated workflows that engage multiple stakeholders. Furthermore, Activate is adept at supporting intricate and hybrid enterprise environments, where identity processes go beyond mere account creation to encompass the entire operational lifecycle of non-human identities, like service accounts, bots, and AI agents. Overall, Activate IAM not only enhances efficiency but also ensures robust identity governance across diverse organizational frameworks.
Learn more
ZTXGate
ZTXGate represents a cutting-edge Zero Trust Network Access (ZTNA) solution that merges the intuitive experience of a contemporary SaaS control plane with the benefits of on-premises software, including deployment flexibility, data sovereignty, and isolated blast-radius capabilities. Each client utilizes a unique single-tenant instance to ensure optimal security and performance.
The platform facilitates identity federation through OIDC SSO for the administrative portal, featuring a per-provider registry, PKCE implementation, group-to-role mapping, and a local break-glass conversion. It also supports SCIM 2.0 inbound provisioning via a dedicated hardened listener equipped with per-token bearer authentication, CIDR allowlisting, and rate limitations. The system enables cross-protocol identifier linkage to ensure that an OIDC login and a SCIM-provisioned user are recognized as a single identity.
Additionally, ZTXGate offers a pluggable biometric step-up solution that allows for push challenges through its own authenticator (ZTXBAS), as well as Okta Verify Push and Duo Push, all governed by a unified policy field. Resource-specific policies determine the backend in use, while API credentials are securely encrypted at rest.
Furthermore, the platform incorporates MDM and EDR device posture as a crucial element of its policy framework, supporting integrations with Microsoft Intune, Defender, and SentinelOne Singularity to enhance overall security posture and compliance.
Learn more