Skip to main content

Zero Trust Network Access for Growing Teams

Give people access to the applications and infrastructure they need—not the whole network. ZTXGate brings identity-, device-, and policy-aware access to infrastructure operated by your organization or MSP.

Move Beyond Broad Network Access

Traditional remote-access VPNs establish network connectivity first and rely on surrounding controls to determine what a connected endpoint can reach. ZTXGate brings the access decision closer to each protected resource.

Everything You Need to Control Access

Apply least privilege, individual device identity, temporary access, identity integration, monitoring, and audit visibility from one product.

Right-Sized Access

Give each person access only to the applications and resources their role requires.

Access That Expires

Use standing access where it makes sense or request-and-approve access that expires automatically.

Every Device, Under Control

Enroll laptops, phones, and tablets individually and revoke a single device without disrupting the others.

Runs Where You Do

Deploy on-premises, in the cloud, hybrid, or air-gapped without a mandatory CoreZT-hosted cloud control plane.

Identity on Autopilot

Use OIDC for sign-in and SCIM to keep users and identity lifecycle changes synchronized.

Step-Up Verification

Require supported additional verification methods for sensitive resources according to policy.

Plugs Into Your SOC

Forward relevant events to monitoring tools through syslog, CEF, or JSON.

Evidence When You Need It

Search and export access, authentication, and policy records for investigations, reviews, and audit activities.

Resource-levelAccess is defined around the resource, user, device, and policy
Self-hostedRun ZTXGate in infrastructure operated by your organization or MSP
FlexibleDeploy on-premises, in the cloud, hybrid, or air-gapped
ObservableAccess, authentication, and policy activity stays visible

From Install to First Secure Connection

Start with a small deployment, validate the access model, and expand at your own pace.

How ZTXGate provides Zero Trust Network Access
  1. 1

    Install

    Install the ZTXGate package on a Linux server or cloud VM.

  2. 2

    Enroll

    Users enroll their devices through a self-service process.

  3. 3

    Define

    Set who can reach which resources using identity, device, posture, time, and other policy conditions.

  4. 4

    Enforce

    ZTXGate evaluates access against policy and continues to enforce it as relevant conditions change.

A Different Access Model

Modern VPN deployments can be tightly secured. The difference is architectural: ZTXGate is designed around authorization to defined resources from the start.

When it mattersTraditional remote-access VPNZTXGate
Primary access scopeNetwork connectivity governed by network controlsDefined applications and resources
Access durationCommonly standing unless separately controlledStanding, temporary, or request-and-approve
Identity lifecycleDepends on the surrounding VPN and directory stackOIDC authentication and SCIM provisioning
Device controlDepends on the VPN and endpoint stackIndividual enrollment plus posture inputs
Audit visibilityVaries by VPN and supporting systemsSearchable access, authentication, and policy records

Deploy Where Your Infrastructure Lives

Core ZTXGate access operation does not require a mandatory CoreZT-hosted cloud control plane.

On-Premises

Run ZTXGate inside an office or data center under customer or MSP operation.

Cloud

Deploy ZTXGate on a Linux VM alongside cloud-hosted applications and infrastructure.

Hybrid

Apply the same access model across infrastructure that spans on-premises and cloud environments.

Air-Gapped

Deploy the core access platform in isolated environments without depending on a CoreZT-hosted cloud control plane.

Manage Access From One Place

Manage users, devices, resources, policies, active sessions, audit records, and license information from a central web interface. Built-in administrative roles let policy ownership remain with administrators while day-to-day support and read-only oversight can be delegated.

Explore Security & Trust → · Clientless ZTNA →
ZTXGate administration portal

Start With the Infrastructure You Already Have

Install ZTXGate on a Linux server or cloud VM, enroll a small group of users, define access to a few resources, and expand from there.

Reach the Right Team

Pricing, demos, and onboarding

Technical help and customer support

Product, deployment, licensing, or partnership questions