Ivanti Secure Access Client

Availability:

Available on backorder


Ivanti Secure Access Client is a unified client for secure VPN and ZTNA connectivity, ensuring endpoint compliance and seamless access to corporate resources across diverse devices.

Compare

Ivanti Secure Access Client is a lightweight, unified client application that enables secure, seamless access to corporate applications and resources through Ivanti Connect Secure (SSL VPN) and Ivanti Neurons for Zero Trust Access (nZTA). It consolidates multiple connectivity profiles into a single client, supporting layer 3 VPN, per-app VPN, and Zero Trust Network Access (ZTNA) for Windows, macOS, iOS, Android, and Linux devices. The client ensures endpoint compliance, enforces strong authentication (e.g., MFA, biometric), and provides a consistent user experience across on-premises, cloud, and hybrid environments. Managed via Ivanti Neurons for Secure Access or on-premises consoles, it integrates with endpoint management and security tools to verify device posture before granting access. The client is designed for the “Everywhere Workplace,” offering always-on connectivity, split tunneling, and secure app-specific access without requiring multiple agents

  • Architecture:
    • Components:
      • Ivanti Secure Access Client: Client software installed on end-user devices, supporting VPN and ZTNA connectivity.
      • Ivanti Connect Secure Gateway: Physical/virtual appliance for SSL VPN access.
      • Ivanti Neurons for ZTA Controller/Gateway: Cloud-based services for ZTNA access.
      • Management: Configured via Ivanti Neurons for Secure Access (cloud) or Connect Secure Admin Console (on-premises).
    • Deployment Options:
      • Client-Based: Installed on Windows, macOS, iOS, Android, Linux devices.
      • Agentless: Supported for browser-based access (limited to Connect Secure, not nZTA).
      • Managed: Deployed via MDM/UEM (e.g., Ivanti Neurons for UEM, Microsoft Intune) or standalone.
    • Scalability: Supports millions of concurrent users; scales with gateway infrastructure.
    • Operation Mode: Client-based for full functionality (VPN, ZTNA, per-app VPN); agentless for browser access to web apps.
  • Supported Platforms:
    • Desktop: Windows 10/11 (32/64-bit), macOS 11–14, Linux (Ubuntu, Red Hat, SUSE; limited ZTNA support).
    • Mobile: iOS 11+, iPadOS, Android 8+.
    • Browsers: Chrome, Edge, Firefox, Safari (for agentless access via Connect Secure).
    • VDI: Citrix Virtual Apps and Desktops, VMware Horizon, Azure Virtual Desktop (via Connect Secure).
  • Authentication:
    • Methods: SAML 2.0, OAuth 2.0, TOTP, biometric, certificate-based, username/password.
    • MFA: Ivanti Neurons MFA, Okta Verify, Duo, Google Authenticator, RSA SecurID.
    • Integration: Azure AD, Okta, Ping Identity, Active Directory, LDAP.
  • Access Features:
    • VPN Modes: Always-on, on-demand, per-app VPN (iOS, Android, macOS, Windows).
    • ZTNA: Direct-to-application access with no network exposure; supports micro-segmentation.
    • Split Tunneling: Configurable to route specific traffic through VPN/ZTNA or directly to the internet.
    • Per-App VPN: Encrypts data for specific apps without SDKs or app wrapping; ideal for mobile devices.
    • Lock-Down Mode: Forces all traffic through the secure tunnel (Windows, macOS).
  • Endpoint Compliance:
    • Host Checker: Verifies antivirus, encryption, OS patches, firewall status, and jailbreak/root status.
    • Remediation: Blocks non-compliant devices or redirects to remediation workflows.
    • Integration: Works with Ivanti Neurons for UEM, MobileIron, Microsoft Intune for device posture.
  • Security:
    • Encryption: mTLS for ZTNA, SSL/TLS for VPN; FIPS 140-2 certified cryptographic modules.
    • Certificate-Based Auth: Passwordless access to prevent man-in-the-middle attacks.
    • Client-Side Risks: No direct vulnerabilities in the client, but dependent gateways (Connect Secure, nZTA) have issues (e.g., CVE-2025-22462).
    • Protection: Anti-tamper mechanisms prevent client bypass; secure uninstall requires admin privileges.
  • Integrations:
    • Ivanti Ecosystem: Ivanti Connect Secure, Neurons for ZTA, Neurons for Secure Access, Neurons for UEM, Policy Secure (NAC).
    • Third-Party: Microsoft Intune, MobileIron, ServiceNow, Splunk, Palo Alto Networks, Okta, Azure AD.
    • MDM/EMM: Push client configurations via MDM for iOS, Android, Windows, macOS.
    • APIs: Limited client-side APIs; relies on gateway APIs for integration.
  • Visibility and Reporting:
    • Client Logs: Tracks connection status, compliance checks, and errors; viewable via client UI or gateway console.
    • Gateway Dashboards: Real-time visibility into client connections via Ivanti Neurons for Secure Access or Connect Secure console.
    • Reporting: Client activity logs exportable to SIEM (Splunk, QRadar) via gateway integration.

Select at least 2 products
to compare