Clavister OneConnect — Mobile VPN for Business
Clavister OneConnect is an iPhone application that provides secure remote access to corporate systems via an encrypted SSL VPN tunnel. Built by Clavister AB, the app leverages Apple's Packet Tunnel Provider network extension to maintain a stable, system-level connection between the device and company networks.
Primary features and benefits
- Requires a Clavister NetWall NGFW running cOS Core (or a later release) to operate correctly, ensuring compatibility with existing network appliances.
- Two-factor sign-in is available through integration with Clavister OneTouch, combining a user password with the mobile device for stronger authentication.
- Traffic is protected by Clavister NetWall Next-Generation Firewall to help preserve confidentiality and data integrity.
- Provides remote access to essential services such as corporate email and virtual desktop environments from anywhere with a connection.
- Uses encrypted SSL VPN sessions to secure data in transit between the iPhone and corporate resources.
- Implements Apple’s Packet Tunnel Provider extension for reliable, platform-integrated VPN routing and stability.
- The client application is distributed free of charge, though the firewall requirement above is necessary for full functionality.
Authentication and protection model
OneConnect improves account security by pairing something you know (your password) with something you have (your mobile device) through the OneTouch 2FA workflow. This layered approach reduces the risk of unauthorized access even if credentials are compromised. All VPN sessions are routed through the company’s NetWall NGFW, which applies advanced security policies and inspection to session traffic.
Deployment considerations
To deploy OneConnect in your environment, ensure your gateway is running a supported version of Clavister cOS Core on a NetWall NGFW. This integration guarantees proper handling of the VPN tunnels, policy enforcement, and compatibility with OneTouch authentication. Because the app integrates with Apple’s network extension framework, it requires iOS devices that support the Packet Tunnel Provider API.
Typical use cases
- Remote employees accessing corporate email and virtual desktops from outside the office.
- Mobile-first teams that need secure, on-the-go connections to internal applications.
- Organizations that require two-factor authentication tied to a managed firewall infrastructure.
Technical
- iPhone
- Free