Versa Secure Access
The Complete SASE Solution to “Work-from-Anywhere"
Versa Secure Access
Contact us for Pricing!
Get a Quote
Versa Secure Access (VSA) is the industry’s first solution to deliver the leading Secure SD-WAN services and private connectivity for employees who are working from home or are remote. With this solution, employees can now securely connect to applications in both the private and public clouds as part of Versa Secure Access Service Edge (SASE) services.
The Versa Secure Access Services’ foundation is based on the Versa Operating System (VOS™) which powers Secure SD-WAN networks on-premises and in the cloud for thousands of customers globally.
Overview:
Versa Secure Access (VSA) is the industry’s first solution to deliver the leading Secure SD-WAN services and private connectivity for employees who are working from home or are remote. With this solution, employees can now securely connect to applications in both the private and public clouds as part of Versa Secure Access Service Edge (SASE) services.
The Versa Secure Access Services’ foundation is based on the Versa Operating System (VOS™) which powers Secure SD-WAN networks on-premises and in the cloud for thousands of customers globally.
Secure SD-WAN Delivered Directly to Your Home
For the first time, end users can leverage a remote access service directly on their end devices that delivers all the benefits of Secure SD-WAN. Unlike today’s VPN-based work from home solutions, Versa delivers the advantages of Secure SD-WAN remote access, including pervasive visibility of performance of the network, application, and security without requiring additional hardware.
The Versa Secure Access allows for an assured experience with network and application monitoring, all backed by an NSS-recommended integrated security suite. With the majority of the connections now being remote, the enterprise now has an exponentially expanded threat perimeter.
In order to protect the enterprise, Versa Secure Access offers the most comprehensive range of security services. These include stateful firewall, DOS protection, NGFW, IPS, and URL filtering on end users’ client devices connecting privately to company resources hosted in private data centers, public cloud, and SaaS locations.
Versa Secure Access Enables Zero Trust Network Architecture
Versa Secure Access is a cloud managed solution delivering a Zero Trust Network Architecture service to efficiently connect distributed users with distributed applications without compromising on security or user experience. Zero Trust Network Architecture (ZTNA) is based on the fundamental philosophy of trusting no one. In the context of secure access, the requirements translate to the following differentiated features of Versa Secure Access:
- Application Segmentation to restrict access
- Strong Multi-Factor Authentication (MFA)
- Granular Application and Role-Based Control
- Application and Network Visibility
Meeting Your Privacy and Performance Requirements
Versa Secure Access is powered by Versa Operating System (VOS™) which give you all the capabilities of Secure SD-WAN that meet all your security and connectivity needs.
Secure Connectivity to Cloud and Enterprise
- Robust encryption, enterprise authentication capabilities
- Built-in security (stateful firewall, DoS, app firewall)
Application, User and Network Visibility
- Real-time and historical visibility
- Network and application performance
Assured Application Experience
- User, device and app optimized
- SLA and app monitoring
- FEX, MOS aware
Fast and Easy to Deploy and Operate
- Cloud-based solution provides deployment agility and scale
- No CPE hardware: non-intrusive to end user home network
Secure and reliable connectivity. Work from anywhere.
- Versa Secure Access Service’s advanced SD-WAN, SASE, and security benefits integrated in a managed and cloud-delivered service significantly reduce cost and complexity compared with on-premises solutions.
- Versa Secure Access Service provides integrated security and user authentication capabilities using an enterprise’s own RADIUS, LDAP or Active Directory servers.
- The solution supports two-factor authentication for enhanced security.
- The solution uses industry standard IKEv2/IPsec stack with strong ciphers and large key sizes for protecting traffic. In addition, it delivers private connectivity for VPC-hosted applications, multi-cloud environments, and SaaS applications.
4 easy steps to get started!
Versa Secure Access is available through Versa’s extensive global channel partner network in North America, EMEA, and select APJC geographies as a turnkey, VPN-as-a-service cloud-based managed service.
Step 1
Place an order for the Secure Access service
Step 2
Versa provisions your Versa Cloud Gateways
Step 3
Install and register the Secure Access client
Step 4
Begin using the Secure Access service
How to Deploy Versa Secure Access
Versa Secure Access is available in an array of deployment options, allowing you to tailor the solution to your network environment.
Partner Hosted
For customers who want to host directly from a partner managed solution, Versa Secure Access is available through partner-hosted private gateways. While ensuring the benefits of a cloud service, the private gateways provide unprecedented privacy to the customer that is managed through their partner.
Cloud-Delivered
Cloud hosted applications are accessed directly from the Versa Cloud Gateways that avoid hair pinning to enterprise DC before breaking out to the cloud again. Customers can also extend the connectivity to the public cloud workloads and select SaaS applications over a private link.
Capabilities:
Micro-segmentation
Versa Secure Access uses micro-segmentation to control and limit the application visibility to authorized users. Users can be configured to use the Versa Secure Access Client to connect to different gateways for different applications. Application and Gateway combination is dynamically configured to give best application experience and provides an additional level of security is provided by preventing the user from the accessing gateways from which the application is not accessible or not preferred. With support for multiple gateways*, customers can dedicate certain gateways for secure applications while allows users to access generic applications from other gateways.
User Authentication and Authorization
Versa Secure Access leverages the enterprise’s preferred Identity Provider to authenticate and authorize the user. Versa Secure Access integrates with various types of authentication servers like RADIUS, Active Director, SSO servers like OKTA and different authentication protocols like EAP, LDAP, Kerberos, SAML2. The Enterprise Identity is used to authorize the users for application access policies.
Application Firewall
Versa Secure Access enforces policies which authorizes access to application on a per user/user group basis. The applications can be defined using FQDN/Host name, wild cards, IP address subnet and ports or combination of these. The policies are based on the username/group information received during the authentication from enterprise identity servers.
Application and User Visibility
Application, User and Network visibility is necessary to efficiently operate the network and to secure it from external threats. Versa secure access builds on top of big data based Versa Analytics platform to provide the network administrators with real time view as well as historical reporting of Users, Application and Network.
Assured Application Experience
Versa’s market leading Secure SD-WAN functionality ensures the application experience for the users, no matter where they are connecting from. Versa secure access applies various techniques like SLA monitoring2, Traffic engineering2, Forward Error Correction* that have been extensively deployed in connecting branches now to this software based service.
Versa Secure Access supports geo-location, user and application policy to ensure clients connect to the closest gateway based on current user location. Versa Secure Access Client can connect to a multiple gateways* based on which application is being accessed. Versa Secure Access Client makes the routing decision to the best available gateway based on real time network information.
Cloud hosted applications are accessed directly from the Versa Cloud Gateways. As the applications avoid hair pinning to enterprise DC only to break out into the cloud again, the application experience is improved. The resources required at the data center are also reduced.
Customers can also extend the connectivity to the Public cloud workloads and select SaaS applications over a private link.
Private Gateways
For customers who expect enhanced privacy, Versa Secure Access also offers cloud hosted private gateways. While ensuring the benefits of a cloud service, the private gateways provide unprecedented privacy to the customer.
Service Tiers
The Versa Secure Access is offered in following flavors:
Features | Essentials | EssentialsPrivate | Professional | Professional - Private |
---|---|---|---|---|
VPN Client for Windows 10, MAC OS | ||||
Connections to multiple Cloud Gateways* | ||||
Authentication with Enterprise authentication server | ||||
S2S tunnels to Enterprise DC | ||||
Perfect Forward Secrecy and Top of the Line Enterprise Class Encryption | ||||
Built in Security (SFW, DOS Protection) | ||||
Application, Network and User visibility | ||||
Service Reliance (Overcoming Gateway failure) | ||||
App Whitelisted per User (5 Applications) | ||||
App Whitelisting for unlimited apps | ||||
Streaming to 3rd party analytics server | ||||
Direct Connectivity to SaaS apps2 | 2 Apps | |||
Direct Connectivity to Multi-Cloud | 2 VPC connections (Same region) |
|||
Dedicated back up Gateway within geo location |
1 Will be released with 6.4 version of the client.
2 Available with upgrade to 20.4 release of VOS.
* Roadmap
Components:
Versa Secure Access is a distributed solution to connect distributed users to enterprise applications. The applications can be distributed across private cloud, enterprise data centers and public cloud. The Secure Access Solution consists of:
Versa Cloud Gateways
Versa Cloud Gateways are based on industry leading VOSTM platform. They are globally distributed to provide distributed secure on-ramps for access to enterprise applications. Gateways authenticate users, authorize the application access and secure the enterprise network from external threats. Versa Cloud Gateways are built on VOS that integrates advanced routing, comprehensive security, market leading SDWAN along with secure access. The Versa Cloud Gateways securely connect to and integrate with existing infrastructure in Enterprise network and datacenter.
Versa Secure Access Client
Versa Secure Access Client is software agent/application that runs on and extends SD-WAN to cli-ent devices (ie: Windows, MacOS computers, smart phones1 ). Versa Secure Access Client creates a se-cure and encrypted connection from remote device to the Versa Cloud Gateway. Upon authentication and access authorization through the Versa Cloud Gateway, users with VSAC can securely connect to enterprise applications in public and private cloud.
Versa Secure Access Portal
Versa Secure Access Portal is provides enterprise administrators ability to monitor and manage granular view of users and applications. Versa Secure Access Portal provides real-time and historical reporting at a network, application or user level.
Video:
Introducing Versa Secure Access
Work from anywhere with secure, reliable connectivity.
Versa Secure Access is the industry’s first solution to deliver the leading Secure SD-WAN services and private connectivity for employees who are working from home or are remote. With this solution, employees can now securely connect to applications in both the private and public clouds as part of Versa Secure Access Service Edge services.
Documentation:
Download the Versa Secure Access Datasheet (.PDF)