GCXONE · Plattform
NXGEN VPN
Managed Secure VPN Connectivity
Encrypted. Managed. Always-On.
NXGEN VPN is a fully managed secure connectivity solution that bridges your customers’ surveillance environments — NVRs, cameras, recorders, and edge devices — with NXGEN’s cloud and operations infrastructure. Purpose-built for surveillance integrators and MSPs, it eliminates the complexity of designing, operating, and troubleshooting VPN infrastructure, so your team can focus on delivering service rather than managing network plumbing.
Wichtigste Funktionen
- Zero infrastructure burden — NXGEN manages all VPN operations centrally
- Always-on remote access to customer NVRs, cameras, and edge devices
- Faster incident response — authorized operators connect instantly to any site
- Optimized for low-latency video traffic across surveillance environments
- Flexible deployment across cloud, branch, and on-premise environments
- Multi-protocol support adapts to existing customer infrastructure
- NAT support handles overlapping or customer-specific IP addressing
- Scalable architecture supports high-volume multi-customer deployments
Typische Einsatzfälle
- Connect customer NVRs and recorders to NXGEN-managed environments
- Secure communication with cameras and edge devices inside customer networks
- Remote troubleshooting and support access by authorized NXGEN operators
- Centralized access to multiple customer sites via a single VPN client
- Hybrid networking across cloud, branch, and on-premise surveillance sites
- Managed VPN for MSPs and integrators serving multi-tenant environments
Performance at a glance
99.95%
Uptime SLA (AWS IPsec)
Under 70 ms
Typical tunnel latency
1 Gbps+
VPN throughput per tunnel
AES-256
Encryption standard
Primary protocol
OpenVPN
- Industry-standard SSL/TLS-based VPN
- Split tunnel reduces unnecessary backhaul
- Operator PC client access (CloudConnexa)
- Ideal for remote access and multi-site connectivity
- Flexible port configuration (TCP/UDP)
Primary protocol
IPsec
- High-performance site-to-site tunnelling
- Route-based and AWS Site-to-Site VPN support
- BGP and static routing compatible
- Hardware-accelerated AES-256 encryption
- Best for branch and on-premise integrations
Also supported: WireGuard, an ultra-lightweight modern VPN protocol ideal for performance-constrained edge devices, and Meraki VPN, a native integration for Meraki-based customer deployments.
Getting started
Deployed and operated by the NXGEN team — discovery, design, testing, and go-live, end to end.
- 01Discovery and scopingNXGEN reviews customer network topology, site count, and device requirements
- 02Design and configurationVPN architecture designed and configured — protocols, routing, NAT, and authentication selected
- 03Testing and validationTunnels tested end to end; latency, throughput, and failover confirmed
- 04Go-live and monitoringMonitoring and support activated
Auf einen Blick
- VPN Throughput
- Up to 1 Gbps+ per tunnel, protocol and infrastructure dependent
- Encryption Overhead
- Minimal — hardware-accelerated AES-256 via AWS infrastructure
- Tunnel Latency
- Typically under 70 ms; varies by customer site geography
- Concurrent Tunnels
- Scalable — multiple concurrent site-to-site and operator tunnels supported
- Video Traffic Handling
- Optimized for continuous H.264/H.265 surveillance streams; split tunnel reduces unnecessary backhaul
- Packet Loss
- Under 0.5% target under normal operating conditions
- VPN Protocols
- OpenVPN, IPsec, WireGuard, Meraki VPN
- Connectivity Types
- OpenVPN CloudConnexa, IPsec Route-Based VPN, AWS IPsec Site-to-Site, WireGuard, Meraki VPN
- Operator Access
- OpenVPN client-based PC accounts for authorized NXGEN personnel
- Authentication Methods
- Pre-Shared Keys (PSK), certificate-based authentication
- Encryption Standard
- AES-256 across all supported VPN technologies
- Access Control
- Centrally managed by NXGEN — no customer systems exposed directly to the internet
- Audit & Logging
- Full access logs maintained — who accessed which device and when, supporting accountability and compliance reviews
- Routing Models
- Static routing, BGP dynamic routing
- Tunneling
- Split tunnel (OpenVPN) to minimize bandwidth usage; full tunnel available
- NAT Support
- Available — handles overlapping or customer-specific IP addressing
- QoS / Prioritization
- Traffic prioritization for surveillance streams configurable per deployment
- Uptime SLA
- 99.95% monthly uptime; for IPsec, HA configurations available for higher resilience
- High Availability
- IPsec active/passive HA and failover options supported, aligned with deployment design
- Redundancy
- Dual-tunnel configurations supported for automatic failover
- Maintenance Windows
- Planned maintenance conducted with minimal disruption; short windows designed to stay within SLA
- Infrastructure
- AWS-based VPN gateway
- Deployment Models
- Cloud VPN gateway, software-based virtual appliance, customer router/firewall/endpoint integration
- Connected Environments
- NVRs, recorders, IP cameras, edge devices, customer routers and firewalls, branch and on-premise sites
- Onboarding Timeline
- Typical deployment completed within 2 to 5 business days from engagement; complex multi-site rollouts scoped individually
- Cloud Platform
- AWS networking environment
- Vendor Integrations
- Meraki-based deployments, OpenVPN CloudConnexa, customer firewalls and routers
- Management Model
- Fully managed by the NXGEN operations team
- Monitoring
- Centrally operated — tunnel health, uptime, and performance monitored proactively
- Reporting
- Operational status reports available as part of the managed service engagement
- Support Model
- The NXGEN team handles ongoing operations, incident management, and escalation
Performance & speed
Supported protocols & connectivity
Authentication & security
Routing & traffic
Availability & resilience
Deployment & infrastructure
Integrations
Management, monitoring & operations