OREL SECURE VPN

Orel Secure VPN

Encrypted, policy-enforced access — anywhere your team works.

A secure VPN that wraps every connection in end-to-end encryption and enforces zero-trust access policy. Orel Secure VPN is not a traditional tunnel — a central VPN Master pushes access, filtering, and DNS policy to every agent, so one rule set governs the whole fleet. Route traffic through OREL’s hardened network, split-tunnel by policy, and keep remote and branch traffic off the open internet.

View plans All solutions
Central VPN Master policy engine
DNSSEC + content filtering at the agent
Cross-platform: Android, iOS, Windows, Linux, macOS
THE PROBLEM

Remote and branch traffic over consumer VPNs or direct connections is a sitting target — no policy enforcement, no visibility, and credentials that travel in the clear.

One compromised endpoint becomes a network bridge. Traditional VPNs only encrypt; they don’t decide what users can reach, and they don’t protect the people behind them — including children on a home or school network.

OUR APPROACH

Per-user encrypted tunnels with a central VPN Master policy engine (who can reach what, from where, and what gets filtered), DNSSEC-validated resolution, and content filtering enforced at the agent.

Deploy as a managed service or self-hosted, billed per active user, across every device your people use.

BUILT FOR

Where this earns its keep.

  • Remote workforce secure access
  • Branch-to-HQ encrypted link
  • Contractor and partner access
  • Schools & families — child-safe filtered internet
WHY WE'RE DIFFERENT

Most VPNs only encrypt — they open a pipe and hope for the best.

Orel Secure VPN decides what each user and device can reach, validates every DNS query, and filters content at the edge. One policy, enforced everywhere, the moment you change it.

PROTECTION STACK

Decide what each device can reach — then prove it.

CENTRAL CONTROL PLANE

The VPN Master

One control plane decides what every connected agent can do. Push once; every device follows.

  • Per-role and per-user access policy — who reaches what, from where, on which device
  • Split-tunnel by policy: route only corporate or filtered traffic, keep local LAN usable
  • Geo & time restrictions: block or allow by region and working hours
  • Live policy push — agents re-evaluate the moment a rule changes, no reinstall
GOVERNED INTERNET

DNSSEC + Content Filtering

Every query is validated and filtered before it leaves the device — not just encrypted, but governed.

  • DNSSEC validation on every lookup — stops DNS cache poisoning and spoofed answers
  • Category-based content filtering (ads, trackers, malware, adult, gambling, social)
  • Custom block/allow lists per org, team, or individual
  • Safe-search enforcement on major search and YouTube
Child-safe internet by default
  • Child-safe profile: blocks adult, violence, self-harm and known-malware domains by default
  • Screen-time & schedule windows — pause filtering only inside an approved window
  • YouTube Restricted Mode + Google/Bing safe-search forced on
  • Alerts to a parent/admin when a blocked category is attempted
  • Per-child profiles so a teenager and a younger sibling get different rules
RUNS EVERYWHERE

One agent, every device your people work on.

Android

Mobile agent with always-on tunnel and per-app split-tunnel.

iOS

Mobile agent with on-demand rules and automatic reconnect.

Windows

Desktop client with boot-time connect and local LAN-bypass rules.

Linux

Lightweight agent for servers, kiosks and endpoints.

macOS

Native agent with secure keychain auth and auto-reconnect.

HOW IT WORKS

From rollout to proof.

  1. 01

    Provision

    Create your org, invite users, and issue managed client profiles.

  2. 02

    Policy

    Define rules in the VPN Master — per-role access, split-tunnel, geo restrictions, DNS and content-filter policy.

  3. 03

    Connect

    Agents on every platform authenticate and tunnel through OREL’s hardened network, pulling live policy.

  4. 04

    Monitor

    See live sessions, geo, DNS, and policy-violation telemetry in one pane.

WHAT YOU GET

Capabilities.

End-to-end encrypted per-user tunnels

Central VPN Master policy engine — one rule set for every agent

DNSSEC-validated resolution (blocks DNS poisoning & spoofing)

Content filtering & category blocks enforced at the agent

Cross-platform agents: Android, iOS, Windows, Linux, macOS

Session, geo & policy-violation visibility

Child-safe profiles & enforced safe-search — on by default

DELIVERABLES

What lands in your hands.

  • Managed client profiles
  • VPN Master policy configuration
  • DNS & content-filter policy
  • Session telemetry dashboard
  • Deployment runbook
WHY OREL

Stop trusting the open internet with your traffic. Orel Secure VPN makes every connection encrypted, every query DNSSEC-validated, and every session policy-checked — with one VPN Master controlling the whole fleet. Visibility and control without the hardware headache.

For: Distributed and remote-first teams, schools and families that need zero-trust remote access and governed internet — without running their own gateway.

View plans