Back to Customer Stories
Healthcare
2min read
October 17, 2021

Health Tech Provider Takes Network Security To The Cloud

Customer Details This company develops medical technology to help doctors better care for patients with chronic illnesses.

The Challenge: As its workforce grew and VPN reliance increased, the company searched for a more secure alternative to passwords with 802.1X authentication.

Deployment Timeline

The client reached out to SecureW2 in August 2021. Luke, the Senior Network Engineer, wanted help setting up a RADIUS and PKI that could integrate into their cloud environment.

After a brief trial period, and a few phone meetings with our support team, they were able to launch their 802.1X network backed with a dynamic Cloud RADIUS in just a week’s time.

Challenges

This company was looking for a solution that would help regulate their network activity for their expanding team that was becoming more reliant on VPNs to access company resources. Luke and his team had researched 802.1X authentication and wanted to implement the protocol as their network solution.

Quote Icon
"Certificate-based authentication looked like the perfect solution for us, but we didn’t have an active RADIUS server and we didn’t have any experience with setting up a PKI."
LUKE, SENIOR NETWORK ENGINEER

The IT team tried to set up their own RADIUS server using NPS, but found the service was time-consuming for configuration and required hours of upkeep and maintenance. In addition, this method can only work via a password authentication protocol (PAP), which is far less secure than its 802.1X certificate counterpart.

Quote Icon
"NPS was superfluous because we still had to use passwords and it was taking valuable time away from other projects. This RADIUS solution was becoming more trouble than it was worth."
LUKE, SENIOR NETWORK ENGINEER

The client also needed a system in place to manage all the devices accessing their network, regardless of whether the device was managed or BYOD.

Quote Icon
"We have a wide assortment of devices on our network, so we needed a way for everything to be visible and manageable. "
LUKE, SENIOR NETWORK ENGINEER

Solution

SecureW2 provided the client with everything they were looking for and then some. The client was on a tight deadline to finish the deployment and made it known early.

Quote Icon
"We weren’t shy about letting you guys know we needed this done fast, and you delivered."
LUKE, SENIOR NETWORK ENGINEER

The client was already utilizing Jamf as an MDM to manage their Mac OS and Windows devices, so they were able to leverage SCEP gateways to auto-enroll devices. Certificates are distributed to MDM devices and devices use the certificate to automatically connect to the network with no human interaction. It is an extremely efficient method for organizations that want to complete the network setup fast.

A valuable feature of deploying certificate security with SecureW2 is that we integrate with all major MDM vendors in the industry. All an organization’s MDM devices can be outfitted with certificates in an instant.

Quote Icon
"The SCEP solution really made our lives so much easier because we didn’t have to worry about anyone messing up with configuration. What really blew us away, though, was the ability to make policy changes in Azure that would automatically be reflected by Cloud RADIUS."
LUKE, SENIOR NETWORK ENGINEER

Our Dynamic Cloud RADIUS is the only cloud RADIUS that can directly reference cloud identity providers like Azure. This allows the IT department to enforce group policy and user segmentation by editing a user attribute in Azure rather than going through a certificate management cycle. Being able to manage user attributes in Azure simplifies certificate management, especially when combined with the easy-to-use management portal that lets IT view all activity on the network.

Quote Icon
"We’re confident that if anything suspicious happens, we’ll be able to catch it, thanks to you guys. "
LUKE, SENIOR NETWORK ENGINEER

Evaluating Success

They reached out to SecureW2 to secure a PKI and a RADIUS. What they ended up with was a state-of-the-art network infrastructure that is backed with an industry-exclusive Dynamic RADIUS.

Their managed devices were able to be enrolled with certificates through SCEP and users with BYOD are able to enroll themselves for certificates in just a matter of minutes. Employees working from out of the office are able to access the company VPN using SecureW2’s intuitive Cloud RADIUS for VPN authentication.

Quote Icon
"SecureW2 did everything we wanted and more. Both the PKI and RADIUS are cloud-based, so we don’t have to worry about maintenance or up-keep. We really can’t recommend you guys more."
LUKE, SENIOR NETWORK ENGINEER

Learn More About SecureW2

Explore SecureW2's trust model, dive into our platform and product details or read more success stories.

Why SecureW2

Establish continuous trust with Dynamic PKI and Cloud RADIUS. Enforce access based on live identity, device posture, and risk context.

  • Passwordless authentication that can’t be phished
  • Works with your IdP, MDM, and security stack
  • Real-time policy engine for dynamic access control
Explore the Platform

Get the essentials on the products that power continuous enforcement.

Knowledge Base Articles

Explore practical guidance from engineers and admins deploying SecureW2.

  • Setup and configuration tutorials
  • Integration best practices with IdPs and MDMs
  • Troubleshooting guides for PKI and RADIUS