Skip to content

Connecting via VPN

Use this guide after your administrator has granted VPN module access and assigned you to an access policy.

The VPN module requires module.vpn and a tenant license that includes VPN. If the menu is missing, contact your administrator.

  • VPN permission on your user or group
  • MFA configured on your account
  • An approved access policy for the target gateway
  1. Open VPN → overview (/vpn).

  2. Choose the gateway (site / edge appliance) you need.

  3. If the policy requires it, supply an associated Change Request ID.

  4. Download the WireGuard profile or use your organization’s approved VPN client.

  5. Activate the tunnel. Traffic to allowed assets routes through the VPN Hub; see Architecture Overview.

  • Sessions (/vpn/sessions) — view active connections
  • Audit (/vpn/audit) — review historical session metadata (administrators and auditors)