What is SASE?

Secure Access Service Edge (SASE) is a new network and cybersecurity architecture combining SD-WAN, ZTNA, and threat prevention. It manages access to on-prem or cloud applications based on users’ roles, locations and schedules. It also provides multi-layer cybersecurity with IP filtering, DNS filtering, CountryBlock, AdBlock, and Intrusion Prevention System (IPS). In addition, it monitors networks and users, discovers new devices, and reports significant events as well as suspicious activities in real-time.

WHY OTHER SASE SOLUTIONS ARE RISKY


Today's SASE networks are not capable of making direct connections among sites. Instead, they carry all of the traffic to their overlay networks located in their datacenters or in a public cloud. Overlay networks are risky, because:

  • They create additional latency.
  • They may limit networks with their available bandwidth.
  • They introduce a new point of failure.
  • Companies lose control of their networks.
  • Privacy risk as data goes through the provider's network.

Roqos Distributed SASE



Thanks to the patented OmniVPN® technology, Roqos' Distributed SASE directly connects multiple sites and remote users. Roqos' Distributed SASE does not require any modifications on ISP or upstream routers while inter-connecting every network type including the following:

  • Network with CGNATs
  • Multiple NATs
  • Cellular connections
  • Satellite connections
  • Networks with private IP addresses
Since only the SASE management traffic is in the Roqos Cloud, no data packets are sent to public clouds. Roqos Core appliances with high processing power, large memory and storage locally implement all SASE features in a distributed fashion instead of being dependent on a public cloud.


Roqos Private-SASE™



Current SASE solutions are implemented in public clouds where all SASE customers' traffic are sent to. However, due to governmental restrictions or security practices, some organizations may not send their data to public clouds. Traditional SASE implementations may not be suitable for these organizations.

Roqos Distributed SASE can also be implemented in a private cloud or private datacenter, without sending any end user or application data to a public network. When implemented on-prem, Roqos' PrivateSASE™ provides the same features as the SASE in the Roqos cloud.

Only Roqos PrivateSASE™ is completely contained in a private cloud without any external communication.

REQUEST DEMO