GCXONEDocumentation

VPN Datasheet

On this page
  1. Product Overview
  2. Key Benefits
  3. Primary Use Cases
  4. Performance at a Glance
  5. VPN Connectivity — Primary Protocols
  6. Technical Specifications

Product Overview

NXGEN VPN is a fully managed secure connectivity solution that bridges your customers' surveillance environments — NVRs, cameras, recorders, and edge devices — with NXGEN's cloud and operations infrastructure. Purpose-built for surveillance integrators and MSPs, it eliminates the complexity of designing, operating, and troubleshooting VPN infrastructure, so your team can focus on delivering service rather than managing network plumbing.

Key Benefits

  • Zero infrastructure burden — NXGEN manages all VPN operations centrally
  • Always-on remote access to customer NVRs, cameras, and edge devices
  • Faster incident response — authorized operators connect instantly to any site
  • Optimized for low-latency video traffic across surveillance environments
  • Flexible deployment across cloud, branch, and on-premise environments
  • Multi-protocol support adapts to existing customer infrastructure
  • NAT support handles overlapping or customer-specific IP addressing
  • Scalable architecture supports high-volume multi-customer deployments

Primary Use Cases

  • Connect customer NVRs and recorders to NXGEN-managed environments
  • Secure communication with cameras and edge devices inside customer networks
  • Remote troubleshooting and support access by authorized NXGEN operators
  • Centralized access to multiple customer sites via a single VPN client
  • Hybrid networking across cloud, branch, and on-premise surveillance sites
  • Managed VPN for MSPs and integrators serving multi-tenant environments

Performance at a Glance

Metric

Value

Uptime SLA

99.95% (AWS IPsec)

Typical Tunnel Latency

< 70ms

VPN Throughput

1 Gbps+ per tunnel

Encryption Standard

AES-256

VPN Connectivity — Primary Protocols

OpenVPN (Primary Protocol)

  • Industry-standard SSL/TLS-based VPN
  • Split tunnel — reduces unnecessary backhaul
  • Operator PC client access (CloudConnexa)
  • Ideal for remote access & multi-site connectivity
  • Flexible port configuration (TCP/UDP)

IPsec (Primary Protocol)

  • High-performance site-to-site tunnelling
  • Route-based & AWS Site-to-Site VPN support
  • BGP and static routing compatible
  • Hardware-accelerated AES-256 encryption
  • Best for branch and on-premise integrations

Also Supported

  • WireGuard — Ultra-lightweight modern VPN protocol, ideal for performance-constrained edge devices
  • Meraki VPN — Native integration for Meraki-based customer deployments

Operator VPN Access — Built-In Remote Reach

NXGEN provides OpenVPN client accounts for authorized operators, giving your team secure access to customer NVRs, recorders, and cameras from any location — without exposing those systems to the public internet. This means faster issue resolution, lower support costs, and a better service experience for your customers — all through a single, centrally controlled access layer.

Technical Specifications

Performance & Speed

Specification

Details

VPN Throughput

Up to 1 Gbps+ per tunnel (protocol and infrastructure dependent)

Encryption Overhead

Minimal — hardware-accelerated AES-256 via AWS infrastructure

Tunnel Latency

Typically < 70ms; varies by customer site geography

Concurrent Tunnels

Scalable — multiple concurrent site-to-site and operator tunnels supported

Video Traffic Handling

Optimized for continuous H.264/H.265 surveillance streams; split tunnel reduces unnecessary backhaul

Packet Loss

< 0.5% target under normal operating conditions

Supported VPN Protocols & Connectivity

Specification

Details

VPN Protocols

OpenVPN; IPsec; WireGuard; Meraki VPN

Connectivity Types

OpenVPN CloudConnexa; IPsec Route-Based VPN; AWS IPsec Site-to-Site; WireGuard; Meraki VPN

Operator Access

OpenVPN client-based PC accounts for authorized NXGEN personnel

Authentication & Security

Specification

Details

Authentication Methods

Pre-Shared Keys (PSK), Certificate-Based Authentication

Encryption Standard

AES-256 across all supported VPN technologies

Access Control

Centrally managed by NXGEN — no customer systems exposed directly to the internet

Audit & Logging

Full access logs maintained — who accessed which device and when, supporting accountability and compliance reviews

Routing & Traffic

Specification

Details

Routing Models

Static Routing, BGP Dynamic Routing

Tunneling

Split Tunnel (OpenVPN) to minimize bandwidth usage; Full Tunnel available

NAT Support

Available — handles overlapping or customer-specific IP addressing

QoS / Prioritization

Traffic prioritization for surveillance streams configurable per deployment

Availability & Resilience

Specification

Details

Uptime SLA

99.95% monthly uptime; higher resilience available for IPsec HA configurations

High Availability

IPsec Active/Passive HA and failover options supported — aligned with deployment design

Redundancy

Dual-tunnel configurations supported for automatic failover

Maintenance Windows

Planned maintenance conducted with minimal disruption; short windows designed to stay within SLA

Deployment & Infrastructure

Specification

Details

Infrastructure

AWS-based VPN gateway

Deployment Models

Cloud VPN Gateway; Software-Based Virtual Appliance; Customer Router/Firewall/Endpoint Integration

Connected Environments

NVRs; Recorders; IP Cameras; Edge Devices; Customer Routers & Firewalls; Branch/On-Premise Sites

Onboarding Timeline

Typical deployment completed within 2–5 business days from engagement; complex multi-site rollouts scoped individually

Integrations

Specification

Details

Cloud Platform

AWS Networking Environment

Vendor Integrations

Meraki-Based Deployments; OpenVPN CloudConnexa; Customer Firewalls & Routers

Management, Monitoring & Operations

Specification

Details

Management Model

Fully managed by NXGEN operations team

Monitoring

Centrally operated — tunnel health; uptime; and performance monitored proactively

Reporting

Operational status reports available as part of managed service engagement

Support Model

NXGEN team handles ongoing operations; incident management; and escalation

Getting Started — Typical Onboarding Process

Most deployments are live within 2–5 business days. NXGEN handles all VPN design and configuration — customers simply provide their network details.

  1. Discovery & Scoping — NXGEN reviews customer network topology, site count, and device requirements
  2. Design & Configuration — VPN architecture designed and configured — protocols, routing, NAT, and auth selected
  3. Testing & Validation — Tunnels tested end-to-end; latency, throughput, and failover confirmed
  4. Go-Live & Monitoring — Monitoring and support activated

Contact

Contact us to discuss deployment options for your environment.

Was this page helpful?

Thank you — your feedback goes to the team that owns this page.

Release notes

Know when something ships

New features, fixes and integration updates for GCXONE, delivered to your inbox as they are released.

We send a confirmation link first. Every message has an unsubscribe link.