OREL SECURE VPN
Orel Secure VPN
Encrypted, policy-enforced access — anywhere your team works.
A secure VPN that wraps every connection in end-to-end encryption and enforces zero-trust access policy. Orel Secure VPN is not a traditional tunnel — a central VPN Master pushes access, filtering, and DNS policy to every agent, so one rule set governs the whole fleet. Route traffic through OREL’s hardened network, split-tunnel by policy, and keep remote and branch traffic off the open internet.
View plans All solutionsRemote and branch traffic over consumer VPNs or direct connections is a sitting target — no policy enforcement, no visibility, and credentials that travel in the clear.
One compromised endpoint becomes a network bridge. Traditional VPNs only encrypt; they don’t decide what users can reach, and they don’t protect the people behind them — including children on a home or school network.
Per-user encrypted tunnels with a central VPN Master policy engine (who can reach what, from where, and what gets filtered), DNSSEC-validated resolution, and content filtering enforced at the agent.
Deploy as a managed service or self-hosted, billed per active user, across every device your people use.
Where this earns its keep.
- Remote workforce secure access
- Branch-to-HQ encrypted link
- Contractor and partner access
- Schools & families — child-safe filtered internet
Most VPNs only encrypt — they open a pipe and hope for the best.
Orel Secure VPN decides what each user and device can reach, validates every DNS query, and filters content at the edge. One policy, enforced everywhere, the moment you change it.
Decide what each device can reach — then prove it.
The VPN Master
One control plane decides what every connected agent can do. Push once; every device follows.
- ▹Per-role and per-user access policy — who reaches what, from where, on which device
- ▹Split-tunnel by policy: route only corporate or filtered traffic, keep local LAN usable
- ▹Geo & time restrictions: block or allow by region and working hours
- ▹Live policy push — agents re-evaluate the moment a rule changes, no reinstall
DNSSEC + Content Filtering
Every query is validated and filtered before it leaves the device — not just encrypted, but governed.
- ▹DNSSEC validation on every lookup — stops DNS cache poisoning and spoofed answers
- ▹Category-based content filtering (ads, trackers, malware, adult, gambling, social)
- ▹Custom block/allow lists per org, team, or individual
- ▹Safe-search enforcement on major search and YouTube
- ▹Child-safe profile: blocks adult, violence, self-harm and known-malware domains by default
- ▹Screen-time & schedule windows — pause filtering only inside an approved window
- ▹YouTube Restricted Mode + Google/Bing safe-search forced on
- ▹Alerts to a parent/admin when a blocked category is attempted
- ▹Per-child profiles so a teenager and a younger sibling get different rules
One agent, every device your people work on.
Mobile agent with always-on tunnel and per-app split-tunnel.
Mobile agent with on-demand rules and automatic reconnect.
Desktop client with boot-time connect and local LAN-bypass rules.
Lightweight agent for servers, kiosks and endpoints.
Native agent with secure keychain auth and auto-reconnect.
From rollout to proof.
-
01
Provision
Create your org, invite users, and issue managed client profiles.
-
02
Policy
Define rules in the VPN Master — per-role access, split-tunnel, geo restrictions, DNS and content-filter policy.
-
03
Connect
Agents on every platform authenticate and tunnel through OREL’s hardened network, pulling live policy.
-
04
Monitor
See live sessions, geo, DNS, and policy-violation telemetry in one pane.
Capabilities.
End-to-end encrypted per-user tunnels
Central VPN Master policy engine — one rule set for every agent
DNSSEC-validated resolution (blocks DNS poisoning & spoofing)
Content filtering & category blocks enforced at the agent
Cross-platform agents: Android, iOS, Windows, Linux, macOS
Session, geo & policy-violation visibility
Child-safe profiles & enforced safe-search — on by default
What lands in your hands.
- Managed client profiles
- VPN Master policy configuration
- DNS & content-filter policy
- Session telemetry dashboard
- Deployment runbook
Stop trusting the open internet with your traffic. Orel Secure VPN makes every connection encrypted, every query DNSSEC-validated, and every session policy-checked — with one VPN Master controlling the whole fleet. Visibility and control without the hardware headache.
For: Distributed and remote-first teams, schools and families that need zero-trust remote access and governed internet — without running their own gateway.
View plans