Networking
7 pages in this section.
Pages
Choosing Your Secure Twin Deployment
Five ways to deploy the Secure Twin, and how to pick one: a decision tree by network shape, and an effort/maintenance map from recommended to best-effort.
Deploy Secure Twin with Twin DNS
Steer assets through Access Gate by name, delegate a subdomain to the Access Gate resolver and every name in it resolves to its Secure Twin overlay address.
Deploy Secure Twin with Source-Based Routing
Route an entire origin network through Access Gate with one source-based rule on the router, so a whole subnet or VLAN is protected without touching a device.
Deploy Secure Twin with Twin IPs
Point an asset directly at its Secure Twin overlay address so its traffic transits Access Gate for policy enforcement, with no rewiring of the network.
Deploy Secure Twin via Gateway NAT (L3)
Let the router or L3 gateway destination-NAT selected flows onto the overlay, so traffic transits Access Gate with no change to the assets.
Deploy Secure Twin via ARP Proxying (L2)
Redirect East-West traffic through Access Gate using private VLAN and proxy ARP, with no change to the end devices.
Configuring Access Gate DNS
Give assets memorable DNS names through Access Gate, simpler access, a clean path to migrate IPs, and the foundation for SSL/TLS certificates.