OpenVPN Inc. launched its new Access Server Link feature today. This tool simplifies deploying Zero Trust access in self-hosted environments across the cloud, such as AWS, Azure, and Google Cloud. It combines native app brokerage with a browser-based setup. On top of that, IT teams own the data and the control planes. OpenVPN eliminates the old deployment barriers such as complicated SSH commands and manual SSL configurations.
Instead of laborious manual configuration, administrators have a quick three-step wizard setup. Specifically, admins enter only their hostname, cloud region, and account password. Automated tools instantly preconfigure DNS and SSL certificates. That means a seamless deployment with pre-built templates across AWS, Azure, and GCP. Most teams get their instances up and running within minutes.
Also, network traffic flows directly between endpoints and private servers. Therefore, sensitive data never passes through third-party infrastructure. This architecture preserves strict compliance requirements, including HIPAA, SOC 2, and GDPR standards. OpenVPN ensures that logs and encryption keys stay isolated on client-managed hardware.
”We wanted spinning up a self-hosted ZTNA solution to feel like a managed service without becoming one,” says Rohit Kalbag, OpenVPN’s Vice President of Go-to-Market. “You deploy into your own AWS, GCP, or Azure environment, manage it from our portal instead of over SSH, and we handle the domain and SSL certificate that typically slow teams down on day one all while your configuration and traffic stay entirely on the instance you control.”
Zero Trust Architecture Blocks Lateral Movement
Meanwhile, the Zero Trust Application Broker verifies identity and location for every connecting user. The broker mediates traffic using a placeholder IP address mapped to specific domain names. As a result, users connect exclusively to authorized applications. They never see destination IP addresses or access unauthorized network assets.
Consequently, lateral movement becomes structurally impossible during security incidents. The network connectivity required for a broader breach simply does not exist.
“With Access Server, access is granted per application, per identity, and enforced by design rather than by policy alone,” says Kalbag. “Because entitlements are defined by hostname rather than IP address, they survive cloud migrations, load-balancer changes, and autoscaling across AWS, Azure, and GCP without manual rework all while adhering to the principle of least privilege.”
Key benefits include automated SSL certificate renewals and elimination of security warnings. Moreover, domain settings automatically update during IP address changes. OpenVPN currently offers Access Server Link through Access Server Hub.
For related updates on digital trust and cybersecurity, explore our SOC News.