Stock Abbreviation : Topsec      Stock Code : 002212
7*24 hour service: 400-777-0777

Security SD-WAN Solution

The new-generation multi-branch enterprise networking solution is fast, convenient, efficient, and secure.

Security SD-WAN Solution Overview

Topsec Security SD-WAN solution is a WAN smart interconnection solution rooted in underlying security, combining SDN technology and WAN optimization technology. The solution has four core capabilities: smart access, intelligent routing, security protection, and simple O&M, supplemented by high-performance hardware and dedicated acceleration chips, bringing enterprises a high-performance security networking experience that is more in line with the actual business, and providing a robust boost to the digital transformation of enterprises.

Activity & Announcement
Advantages
Smart access

The solution supports various ways to access WANs such as ADSL, enterprise broadband, 4G, and 5G. With the support of SD-WAN related technologies, the service experience is greatly improved, and the stability and reliability of important services for users are guaranteed in a non-private line environment. Compared with that in the private line environment, a lot of cost is saved.

Security protection

Based on Topsec's underlying security architecture design, the solution is equipped with a professional security system that supports advanced security functions such as IPS, AV, TVD, and WAF; high-performance IPSEC VPN encryption and logical isolation between links; two-way authentication between edge devices and controllers and management data encryption, implementing four-in-one security protection for devices, intranet services, links, and management.

Intelligent routing

By combining link-based and packet-based optimization methods, the solution further refines the traffic, takes application identification and real-time link status check as the benchmark, directs key applications to the link with the best status for prioritized forwarding, and accelerates service access on the packet side for HTTP and other services for optimized service access experience.

Simple O&M

The solution implements the zero-configuration online function of branch devices through the logical structure analyzed by the forwarding layer and control layer. After a branch is deployed and brought online, the controller can be used for implementing rapid O&M functions such as VPN rapid provisioning, unified policy distribution, device status monitoring, and unified log collection, helping customers enhance the O&M experience.

Application
Scenario

In recent years, chain enterprises have grown rapidly. New retail, rental real estate, catering, express delivery, hotels and other chain enterprises have strengthened their dependence on the Internet. All key businesses are IT-based, with numerous branches and stores, wide area coverage, and relatively concentrated business, having more stringent requirements for network interconnection quality and security. A fast, efficient, and secure networking solution is urgently needed.

Issues Resolved
  • Implements flexible Internet access, zero-configuration online function, device plug-and-play, and IT-free deployment. Addresses the issues of fast store expansion, complex network access environment, and lack of professional O&M personnel.
  • Isolates the business network from the public network to ensure the privacy of intranet services.
  • Enables the device to have highly integrated security capabilities and network capabilities to reinforce branch security.
  • Implements intelligent traffic steering, enhancing service experience and stability through QoS.
Scenario

Group enterprises and industry customers have a multi-level structure, with multi-level headquarters and multi-level branches. Second-level units on the customer side will operate some services and provide them to lower-level units for use. The headquarters IT O&M department needs to manage the edge devices of all branches in a centralized manner. The security risk of edge access units is extremely high due to cost or IT capacity problems in branch units, even threatening the security of the entire intranet. A fast, efficient, and secure networking solution is urgently needed.

Issues Resolve
  • Enables the headquarters to manage all branch devices in a centralized manner and set different permissions for member units of different levels for access control. Effectively avoids the risk of leapfrog access.
  • Implements zero-configuration online function for rapid development of branch devices, ensuring service connectivity.
  • Possesses IPSEC hardware acceleration capability, effectively improving VPN performance and preventing services from being affected by performance bottlenecks.
  • Implements intelligent traffic steering, enhancing service experience and stability through QoS.
  • Enables the device to have highly integrated security capabilities and network capabilities to provide virus prevention, intrusion detection and prevention, malicious software protection, and WAF functions, and reinforce branch security.
Value to Customers
Reduced networking cost

The zero-configuration online function provided for front-end equipment not only allows customers to implement rapid service provisioning for customers, but also can partially or completely replace the original private line networking method, which greatly reduces investment in user lines and personnel, thereby contributing to a significant reduction in costs.

Simplified O&M

After a branch is deployed and brought online, the controller can be used for implementing rapid O&M functions such as VPN rapid provisioning, unified policy distribution, and device status monitoring, so that the control of all gateway devices can be completed directly from customer headquarters, enabling simple O&M.

Enhanced service experience

The solution uses professional VPN acceleration chips to provide high-performance VPNs, making customers' core businesses more stable and meeting the requirements of bandwidth acceleration. It optimizes service access experience through the application identification, intelligent routing, and protocol optimization technologies.

Enhanced branch security

The solution provides three-dimensional security protection capabilities: Internet-to-device, controller-to-device, and device-to-device, effectively defending against security threats from the Internet, from the intranet, and from disguised control, and safeguarding branch security, thus reinforcing the security of the entire network.