100% Open Source · Autonomous VPN & Firewall

Network Security for SMEs — Secure access,
Full control

Build enterprise network security with remote access VPN, site-to-site VPN, access control firewall, network segmentation, traffic monitoring and centralized logs. Does not depend on closed devices, does not pay license fees by user or throughput.

✓ No license / user fees ·  ✓ Centralized access management ·  ✓ 24/7 Vietnamese support

0 ₫
License fee / user
VPN
Remote & site-to-site
L3-L7
Access Control
24/7
Monitoring & warning

The business network is being protected at

Data Sovereignty

On-premise & Air-gapped — data is in the hands of the business

The entire solution is built entirely on the company's infrastructure (On-premise) and can operate with an independent storage system (Air-gapped). This is the optimal model to ensure data sovereignty, privacy and eliminate dependence on third-party Cloud providers thanks to 100% autonomy from hardware to software.

The real problem

SME business networks are often too wide open and difficult to control

Remote employees, branches connected to the office, camera/IP phone/ERP/file server are on the same network. When an access control layer is missing, a small problem can spread throughout the system.

🔓

Uncontrolled remote access

Shared account, port opens directly to the Internet, no MFA, no idea who accessed the internal system when. This is a common entry point for ransomware and password sniffing attacks.

🌐

Discrete connection branches

Each office uses its own configuration, its own line, and its own security rules. When needing to open more branches, IT has to configure it manually, making it difficult to standardize policies and check for errors.

📉

There are no obvious logs and warnings

When the network is slow, port scanned or has unusual traffic, businesses do not have a dashboard to trace. The problem is only detected when users are already affected.

Core Features

Enterprise network security in one platform

The solution focuses on access control, network edge protection, secure connection between users and branches, and provides daily operational monitoring capabilities.

🔐

Remote Access VPN

Free license

Enable employees working outside the office to access internal resources over encrypted channels, controlled by account, group, and device.

  • Grant permissions by user, department, device
  • Supports MFA and strong password policy
  • Separation of internal and Internet traffic
  • Revoke rights immediately when the employee quits
  • Login logs and session duration
🏢

VPN site-to-site

Free license

Secure connections between main office, branches, warehouses, factories and data centers without the need for expensive private lines.

  • Encrypt transmission between sites
  • Routing by each subnet
  • Failover when a transmission line fails
  • Control access between branches
  • Monitor tunnel status in real time
🛡️

Access control firewall

Free license

Apply clear firewall rules to each network zone, each user group and each service to reduce the attack surface.

  • Rule theo IP, port, protocol, interface
  • NAT, port forwarding and outbound policy
  • Alias ​​host/service group for easy administration
  • The rule application schedule is based on working hours
  • Log each rule to trace
🏷️

Internal network segmentation

Free license

Separate office networks, servers, cameras, guest Wi-Fi, IoT devices and accounting systems to limit the spread of incidents.

  • VLAN for each device group
  • Interregional access policy
  • The guest network is separate from the internal resources
  • Quarantine subnet for suspect devices
  • Network diagrams are easy to audit
📊

Traffic monitoring & alerts

Free license

Monitor bandwidth, connections, top talkers, blocked access and unusual behavior on the network.

  • Dashboard realtime cho WAN/LAN/VPN
  • Warning when the tunnel drops or the transmission line is overloaded
  • Detect port scan and abnormal connection
  • Centrally save logs for incident investigation
  • Regular reporting to IT management
⚙️

Centralized administration & configuration backup

Free license

Standardize security configurations, periodically backup and quickly restore in case of device failure or misconfiguration.

  • Centralized management web interface
  • Automatic configuration backup
  • Restore configuration after failure
  • Assign admin rights according to role
  • Checklist hardening before operation
Feature ecosystem

access 35+ cyber security capabilities for SMEs

All designed for businesses to clearly manage network access, reduce risk and operate more easily.

AllVPNFirewallSegmentMonitoringVisitOperation
🔐
Remote Access VPN
VPN
🏢
Site-to-Site VPN
VPN
🔑
User Certificate
VPN
🧩
Split Tunnel
VPN
🚦
Tunnel Health
VPN
🛡️
Stateful Firewall
Firewall
🔁
NAT Policy
Firewall
🚪
Port Forwarding
Firewall
📋
Rule Logging
Firewall
⏱️
Time-Based Rule
Firewall
🏷️
VLAN Network
Segment
👥
Guest Network
Segment
📹
Camera Zone
Segment
🖥️
Server Zone
Segment
🚫
Quarantine Zone
Segment
📈
Traffic Dashboard
Monitoring
🔎
Connection Search
Monitoring
🔔
Security Alerts
Monitoring
📝
Central Log
Monitoring
📊
Bandwidth Report
Monitoring
👤
User Policy
Visit
👪
Group Policy
Visit
📱
Device Policy
Visit
🧾
Access Audit
Visit
🔒
MFA Enforcement
Visit
💾
Config Backup
Operation
♻️
Config Restore
Operation
WAN Failover
Operation
📡
Load Balancing
Operation
🧰
Health Check
Operation
Compare costs & control

NAD Network Security vs paid solutions

Businesses still have full core network security features without being locked into subscriptions by user, device or throughput.

CriteriaNAD Network SecurityPaid firewall devicesPaid cloud VPNUTM subscription package
User license fee0 ₫Can arise according to modelCalculated per user/monthCalculated by package/year
VPN remote access
VPN site-to-siteDepending on the package
Firewall rule detailsLimit
VLAN segment
No vendor lock
Log data resides in the enterpriseDepending on configurationCloud dependencyDepending on the package
User/branch expansion costsDo not increase licenseIt may be necessary to upgrade theIncreases by userIncrease by package
Customize rules according to businessVery highCaoAverageAccording to vendor policy
Suitable for SMEs that need autonomy
Cost optimization
Good but high costConvenient but dependent onPowerful but with recurring fees
Deployment model

Pay for implementation —
No repeat license fees

The enterprise owns the configuration, access policies, and log data. The main costs lie in consulting, implementation, hardening and operational support.

1

No fees per user

Adding remote employees or adding VPN accounts does not increase the monthly license fee.

2

Do not lock into the closing device

Can run on hardware that suits the budget and throughput needs of the business.

3

Full control over policy

Firewall rules, routes, VLANs, logs and configuration backups are under the control of the business.

4

Operational support in Vietnamese

NAD supports rule design, connection troubleshooting, log review and periodic security optimization.

Implementation results

Enterprises have better control over the network

Common situations after standardizing VPN, firewall and network segmentation.

"Previously, remote employees used the same account. Now each person has their own account, logs clearly, and when they quit their job, it is immediately revoked."

A
Anh Minh
IT Manager, Distribution Company

"Branch connections to ERP are more stable, without having to open ports directly to the Internet. Rules between departments are also much clearer."

H
Ms. Huong
Operations Lead, Retail Chain

"Log reports help us know who accesses the accounting server, when, and from where. This is something that was not available before."

T
Mr. Tuan
Finance Director, manufacturing SME
Deployment process

From discrete network to centralized control in 4 steps

NAD deploys in the least disruptive way: surveying the current situation, designing policies, running a pilot, and then officially converting.

1

Survey

Inventory lines, subnets, servers, branches, remote users and important devices.

2

Design

Build VLAN diagrams, firewall rules, VPN, access policies and conversion plans.

3

Pilot

Test deployment for a group of users or a branch, test speed and access rights.

4

Go-live

Official conversion, handover of documents, configuration backup and operating instructions.

Service package

Clear implementation costs, no hidden license fees

The cost depends on the number of branches, VPN users, rule complexity and monitoring requirements.

Starter
VPN Remote
From 15 million
deploy once

Suitable for businesses that need remote access security for employees.

  • VPN remote access
  • Separate account for each user
  • Basic MFA
  • Login
  • Does not include site-to-site
Consult this package
Enterprise
Multi-site Security
Contact
according to system size

For businesses with many branches and transmission lines, requiring HA and advanced monitoring.

  • Multi-site design
  • WAN failover/load balancing
  • HA firewall
  • model Long-term focused log
  • Regular security reviews
Contact for consultation

No license fees per user. Businesses only pay for consulting, implementation, hardening and operational support.

Ready to take control
corporate network access?

Schedule a free survey for NAD to assess the current network status, remote access risks and budget-friendly VPN/Firewall deployment options.

Response within 24 hours · Free survey · SME network security consulting