ZTAG Client APP
At its core, ZTAG uses robust SSL encryption and supports SSLv3, TLSv1.2, and DTLS protocols to ensure data remains private and protected. Its industry-leading SSL performance stems from an optimized combination of hardware and software.
ZTAG features a Virtual Site architecture, allowing up to 256 isolated virtual environments on a single appliance. Each virtual site is independently customizable—supporting unique authentication methods, access policies, and user-resource mappings. This capability enables organizations to scale easily and reduce infrastructure costs by consolidating access needs into a single, secure platform.
Security is further enhanced with comprehensive AAA (Authentication, Authorization, Accounting) support. ZTAG supports multi-factor authentication via LocalDB, LDAP, RADIUS, SAML, client certificates, SMS-based 2FA, and HTTP. Multiple AAA servers can be combined to support layered authentication workflows. Fine-grained policy control allows roles, IP restrictions, ACLs, and time-based access policies to be enforced at the user level.
ZTAG provides multiple access modes including Web Access, SSL VPN Client, TAP VPN, Site-to-Site VPN, and IPSec VPN—offering deployment flexibility to suit a range of enterprise needs, from browser-based access to full-tunnel VPN connectivity.
A built-in Zero Trust architecture includes Single Packet Authorization (SPA), device trust validation, internal network stealth, and dynamic access authorization. Endpoint compliance checks and certificate-based authentication ensure only secure, validated devices gain access to protected assets.
Administrators benefit from a powerful management interface via WebUI and CLI. ZTAG supports SNMP, Syslog, and RFC-compliant logging for centralized monitoring and alerting. Tools like session management, policy centers, and system synchronization streamline configuration and maintain high service availability.
For resilience, ZTAG supports High Availability (HA) configurations including Active/Standby, Active/Active, and N+1 models. Real-time sync of configuration and session states ensures uninterrupted access during maintenance or failover.
Additional features include custom web portal branding, HTTP/NTLM SSO, DNS caching, NTP synchronization, and SSL enforcement—making ZTAG a complete, secure, and scalable VPN solution.
ZTAG is engineered for fast deployment and long-term scalability, making it ideal for modern enterprises looking to secure remote access without compromising performance or control.