Public Sector, Municipalities and Professional Bodies

Enterprise Networks

The head office, district directorates, service units and open-area access points are managed as a single network. The same policy set runs at every site, access records are signed and stored, and the report requested in an audit is produced from one place.

What is the problem?

As the number of locations grows, it is not the network but the management that gets harder

An organization's network rarely ends in a single building: alongside the head office there are district directorates, service units, social facilities and publicly accessible access points. When each site is left with its own device, its own rule set and its own logging regime, the result is not one organizational network but dozens of small networks unaware of one another.

The enterprise network solution connects those sites to the central site, runs the same policy set at all of them and gathers access records signed in a single archive. Whatever information an audit asks for is produced from the same place, no matter which unit it came from.

Multi-Location

Ways to connect affiliated units to the central site

Not every unit has to connect the same way. Different connection methods can be used together in the same deployment, depending on your existing infrastructure.

Encrypted Layer 2 tunnel

The remote unit's network connects to the firewall at the central site over an encrypted Layer 2 tunnel, regardless of location or service provider; the unit network works like a part of the central network.

Site-to-site and SSL VPN

Networks at remote sites are joined to the central site with site-to-site VPN. Several connections can be established to different subnet addresses; users in the field are brought onto the network with SSL VPN.

Single-point management on MPLS networks

On MPLS networks, standalone management is provided with no need for an additional DHCP or DNS server; installing only at the central site lets every device be managed from one point.

Line aggregation and failover

At units where the infrastructure falls short, up to five lines are combined and used as one; when one of the lines is cut, access continues over the active lines.

A Single Policy Set

The same policy at every site in the organization

What strains an organizational network is not the rule itself but applying that rule the same way at every site. On XLOG, policy is written centrally per group; whichever unit, user type or location it is, the same rule works the same way.

When a new unit or location is added you do not have to rebuild the rule set; the site is added to the existing group and the policy applies as it is.

What the policy set includes
Rules are written per group; every site in the same group is subject to the same rule
A new unit or location is added to an existing group; the rule is not rewritten
Web, HTTPS and application filtering profiles are defined from one place
Speed and daily quota definition per user or per MAC address
Network admission rules with 802.1x MAC control are part of the same policy
Permissions for opening, closing, forwarding and timed opening of ports
Overseas IPs are blocked by default; access is granted where needed
Instant notification by SMS and e-mail on rule violations and port access
Types of Organization

The same infrastructure, a different design for each structure

The components of the deployment are the same; what changes is how many sites connect to the central one, which user groups are defined and whether there is publicly accessible access.

Public institutions and general directorates

Managing the central unit and the provincial organization under the same policy set. Staff access is defined through the directory service, and a separate guest segment is opened in publicly accessible areas.

Head office – provincial link Staff and guest separation Signed records

Municipalities and provincial administrations

Connecting many sites such as service buildings, social facilities and cultural centers to a single central site; verifying users at publicly accessible access points.

Multi-site setup Public access User verification

Chambers of commerce and professional bodies

Shared internet access offered for member services and separation of the organization's own network; retention of access records in line with regulation.

Member service area Internal network separation Record retention

Let us map out your organization's network together

Share how many locations you have, your user count and your existing line setup; let us design the end-to-end architecture together.

Request a free demo