WireGuard
WireGuard is a modern VPN protocol that gets by with far less code and a fixed set of cryptographic algorithms than older approaches such as IPsec.
WireGuard is a protocol for encrypted network connections, built into the Linux kernel itself and deliberately free of options: there is exactly one set of cryptographic algorithms instead of a negotiation across dozens of variants. Connection setup therefore takes only a few messages, and configuration essentially consists of one key pair per peer.
In operation that means faster connection setup, fewer configuration errors and behaviour that suits mobile devices — switching from Wi-Fi to mobile data does not drop the tunnel, because peers are identified by key rather than by IP address. For home-office access and connecting small sites, that is the tangible difference from classic dial-in solutions.
The limits are just as clear: WireGuard brings no user management. Anyone who wants to assign access to individual employees, revoke it when they leave and protect it with a second factor needs a layer above it — usually the firewall or an access solution. And as with any VPN: the connection is encrypted, not automatically restricted. Whoever is inside should only reach what they need.
What it means in practice
Many companies carry VPN access nobody can account for any more — old certificates, former employees, a shared login for the machine builder. NDVDL sets up site and home-office connections with clear separation of rights and documents which access belongs to whom.
Is this handled properly at your site?
We look at how it actually stands with you — and say honestly whether anything needs doing.
Related terms
All termsA term from your quote missing here?
Send us the passage you do not follow. We will explain it — with no obligation to order anything.