AegisWireAvailable

Secure transport and post-quantum Zero Trust VPN for regulated communications.

AegisWire is a purpose-built secure-transport and enterprise-VPN platform with mandatory hybrid post-quantum cryptography from the first packet — delivered as a managed VPN, an embeddable transport SDK your own products can build on, and an AI-assisted defense layer that scores device posture and session anomalies.

CISOs & security teamsRegulated enterprisesHealthcare networksFinancial servicesGovernment / public sectorVPN providers, MSPs & vendors
AegisWire — product interface

Never described as "quantum-proof" or "unbreakable." Hardware appliance is on the roadmap, not available now.

Capabilities

What AegisWire does

The working surface — what the engine produces, controls and proves in practice.

01

Mandatory hybrid post-quantum key exchange (packet 0)

Every session establishes a hybrid secret combining a classical X25519/ECDH exchange with the ML-KEM-1024 (FIPS 203) post-quantum KEM, with ML-DSA-87 (FIPS 204) post-quantum identity for signed artifacts — there is no classical-only downgrade path. The Noise-rooted private handshake (XX-class when server trust is not yet held, IK-class when it is) carries all negotiation inside HPKE-sealed handshake objects, so cipher suite, KEM set, and trust selection are transcript-bound and downgrade-resistant. Designed to resist harvest-now-decrypt-later; not 'quantum-proof.'

02

Stream-scoped post-compromise security (PCS)

Per-stream forward-secure key evolution ratchets automatically: senders emit a KEY_EPOCH_ADVANCE every 8 packets (EPOCH_STRIDE) with an epoch commitment, so a compromised key only exposes material derived inside a bounded healing window and the blast radius is contained at the stream level. Epoch commitments are wire-visible and replay/rollback-checked (KEY_EPOCH_ERROR on mismatch).

03

Purpose-built UDP transport with roaming and multipath

A first-principles UDP secure transport — not a tunnelled TCP stack — with stream-multiplexed sessions, Connection-ID-based migration that survives Wi-Fi/cellular/wired handoff without reconnection, multipath with per-path crypto isolation, anti-replay (packet-number windows), and anti-amplification via stateless retry cookies before resource commitment. Structured frames (STREAM, ACK, PADDING, PING, PATH_CHALLENGE/RESPONSE, CONNECTION_ID, KEY_UPDATE, KEY_EPOCH_ADVANCE, CONNECTION_CLOSE, DATAGRAM) follow deterministic wire discipline.

04

Packet-level metadata privacy from the first byte

The ClientHello-equivalent is HPKE-sealed to a selected server public config, so no readable negotiation, retry, or hybrid-KEX fields appear on the wire (only spc_id as HPKE context selection, which is also transcript-bound inside the sealed object). Header protection treats early-session metadata as part of the security problem, before higher-level controls can compensate.

05

One unified post-quantum handshake

A single AWT-UNIFIED handshake replaces legacy mode forks — no negotiation, no downgrade, no classical-only lane. Trust is distributed by operational method (native PKI import, pre-provisioned bundle, pinned digest, out-of-band / air-gap media, KEM-wrapped bootstrap, or control-plane sync) without ever changing the wire protocol.

06

Embeddable post-quantum transport SDK (AegisWire Transport)

The same engine that powers the VPN ships as a drop-in SDK: add the SDK, supply one credential and an endpoint, and get a connected, post-quantum-secured session — a connect → send/recv → close facade over the full handshake, multi-lane data plane, and per-stream healing. Memory-safe Rust core with a stable C ABI, Swift XCFramework, Android AAR, and server-side bindings. Built for application, API, mobile, IoT and machine-to-machine traffic. Licensed as token-metered and monthly-call packages.

07

Full enterprise VPN with policy-driven routing

Full and split tunnel (IPv4/IPv6) with tunnel mode set by signed policy, not user choice; secure in-tunnel DNS with leak prevention enforced at the OS network stack; OS-level kill switch with MTU discovery and clamping; NAT traversal via UDP hole punching with relay and port fallback; gateway pool selection with CID-affinity load balancing, controlled failover, and draining. Clients ship for Windows (WinTun), macOS (Network Extension), Linux (systemd/container), iOS/iPadOS (Packet Tunnel Provider), Android (VPN Service, MDM-ready), and headless servers/CI.

08

Dedicated per-customer control plane with built-in identity

A Go control plane gives every customer a 1:1 dedicated instance — no shared multi-tenant control plane — with its own database, credentials, and policies. Built-in user management works standalone (full lifecycle, password policies, TOTP MFA, RBAC, groups, session management, rate limiting and lockout) and optionally federates to Azure Entra ID, AWS Identity Center, Okta, Keycloak, or any OIDC/SAML provider (RS256/ES256/HS256 JWT validation, fail-closed). Full REST and gRPC APIs cover every management function.

09

Signed policy distribution and trust-anchor lifecycle

Versioned, cryptographically signed policy artifacts (SPC bundles) are published and enforced at the gateway with a default-deny posture; trust-anchor rotation and revocation propagate through the trust chain without service interruption. Distribution supports both control-plane publication and DNS SVCB/HTTPS service-binding records for adoption outside SaaS.

10

Privacy-safe observability and evidence-backed releases

Operational visibility uses metadata-only telemetry by default — no content inspection, no payload logging. Releases ship with SBOM generation, signed artifacts (Sigstore cosign / Docker Content Trust), and reproducible builds; audit logs are tamper-evident and retained per your own policy. The cryptography is built to NSA CNSA 2.0 and UK NCSC post-quantum migration guidance.

11

AegisWire Sentinel — privacy-preserving AI defense plane

Sentinel fuses client, gateway, path, posture, policy, DNS and trust-domain signals into a single risk fabric, scoring each session with calibrated uncertainty and blast-radius before any action. It produces only deterministic, bounded, fully-audited security actions, runs on signed models with a verifiable supply chain, and fails safe — if the AI plane is unavailable, AWT continues under deterministic post-quantum enforcement with no AI-dependent acceptance path. Available as a licensed module.

How it works

A controlled, evidence-led flow

01

Enroll device and bind trust

A device is enrolled against the dedicated control plane, binding device identity to the user and policy relationships. Enrollment returns device credentials, trust anchors, and signed SPC/policy bundles. Connectivity then requires verified enrollment — not just valid credentials.

02

Establish a private, hybrid-PQ session

The client opens a UDP session with an HPKE-sealed, Noise-rooted handshake. The server may issue a stateless retry cookie to prevent amplification; the session derives a hybrid secret from classical X25519 plus ML-KEM-1024 (FIPS 203), with metadata private from packet 0 and all parameters transcript-bound.

03

Enforce signed policy at the gateway

The gateway validates the trust anchor and applies the signed policy artifact under a default-deny posture — split-tunnel rules, DNS behaviour, kill-switch mode, and allowed auth modes all reflect administrative intent rather than device-local heuristics.

04

Run with PCS, roaming, and privacy-safe telemetry

During the session, per-stream key ratcheting (KEY_EPOCH_ADVANCE every 8 packets) maintains post-compromise security, CID-based migration keeps the session alive across network changes, and only metadata-level telemetry is emitted — no content inspection.

Use cases

What it's used for

01

Financial services

Hybrid post-quantum transport, signed policy enforcement, and fleet lifecycle management for trading-system interconnects, interbank communications, and customer-facing infrastructure where long-term confidentiality and regulatory posture both matter.

02

Healthcare and life sciences

Long-horizon confidentiality for patient records and EHR interconnects, secure telehealth, and medical-device network segments — with metadata-only telemetry enforced by default so monitoring never inspects clinical content.

03

Government, defence, and sovereign workloads

Self-hosted and air-gap-compatible deployment, CNSA 2.0-aligned cryptographic profile, hardware-rooted trust-anchor governance, SBOM and signed releases, and change-controlled rollout for high-assurance and sovereign environments.

04

Critical infrastructure / OT-IT convergence

Deterministic wire discipline, anti-amplification, and default-deny signed configuration distribution for OT/IT boundaries and remote monitoring, where predictable protocol behaviour and operational reliability are non-negotiable.

05

Global enterprise / distributed workforce

Regional gateway fabric with policy-aware routing and roaming continuity across networks, multi-platform and headless clients, and centralized fleet lifecycle management with instant fleet-wide lockdown during incidents.

06

Multi-cloud and data-center interconnect

Hybrid post-quantum transport for inter-datacenter and multi-cloud links, stream-scoped PCS for east-west traffic, and privacy-safe observability with no payload logging across AWS, Azure, GCP, and customer infrastructure.

Offers

What you can buy or evaluate

Each offer carries an honest availability label.

Enterprise VPN (clients + gateways)Available now — Windows, macOS, Linux, iOS/iPadOS, Android, and headless
Gateway / regional gateway fabricAvailable now — Managed SaaS, dedicated hosted, and self-hosted
Transport SDK (AegisWire Transport)Available now — embeddable post-quantum transport SDK with C ABI, Swift, Android and server bindings; token-metered and monthly-call packages. DNS SVCB/HTTPS publication supported
AegisWire Sentinel (AI defense plane)Available as a licensed add-on — privacy-preserving risk scoring, device-posture and anomaly detection, deterministic bounded response, signed model supply chain
White-label / dedicated control planeAvailable via Enterprise/GOV engagement — dedicated per-customer control-plane instance (sales-led)
Hardware applianceRoadmap — not yet generally available; planned for air-gapped and high-assurance deployments
Outputs & evidence

What you receive — and how it's proven

Every job ships with an evidence record, not just an output.

What you receive

  • Hybrid post-quantum-protected sessions (classical X25519 + ML-KEM-1024, ML-DSA-87 identity) with stream-scoped PCS
  • Signed, versioned policy artifacts (SPC bundles) with default-deny enforcement
  • Device enrollment artifacts: device credentials, trust anchors, SPC and policy bundles
  • Metadata-only operational telemetry and tamper-evident, exportable audit logs
  • SBOM, signed release artifacts, and reproducible-build provenance for supply-chain evidence
  • Per-tenant usage and entitlement reporting (users, devices, throughput, traffic) via REST/gRPC APIs
  • Multi-platform and headless client agents (Windows, macOS, Linux, iOS/iPadOS, Android, servers/CI)
  • Audit-ready evidence packages for compliance and assurance reviews

Evidence & proof

  • Cryptography: Mandatory hybrid X25519 + ML-KEM-1024 (FIPS 203) for confidentiality and ML-DSA-87 (FIPS 204) for all identity and signed artifacts — from packet 0, with no classical-only fallback. Aligned to NSA CNSA 2.0 and UK NCSC guidance.
  • Reference implementation is memory-safe Rust with unsafe forbidden in the core transport
  • Designed around six formal security claims: session confidentiality, integrity, mutual authentication, forward secrecy, post-compromise security, and metadata privacy
  • Built to NSA CNSA 2.0 and UK NCSC guidance — hybrid post-quantum is the recommended path for migrating to quantum-resistant cryptography
  • Stream-scoped PCS is deterministic and testable (KEY_EPOCH_ADVANCE every 8 packets) independent of RTT
  • Supply-chain assurance: SBOM generation, signed releases (Sigstore cosign / Docker Content Trust), reproducible builds, tamper-evident audit logs
  • Example proof point from sibling product RadMah AI: 95.69% on the public mostlyai-qa benchmark (Adult dataset, 24K rows, 200 epochs) — cited as an illustrative result, not a guarantee for AegisWire
Deployment & access

Run it your way

Managed SaaS — AegisWire-operated, dedicated per-customer control-plane containers with cryptographically isolated per-tenant data plane; managed SLA (99.9% control plane, 99.95% gateway per region)Dedicated hosted — single-tenant, deployed in the customer's cloud account and operated by AegisWire, with HA/DRSelf-hosted / sovereign — customer-operated under licence, full infrastructure control, data residency alignment, air-gap compatible, no external dependenciesMulti-cloud — approved baselines on AWS (c7i family), Azure (Dsv5/Esv5), and GCP (c4-standard), plus customer infrastructureHardware appliance — pre-loaded gateway + control plane with hardware-rooted trust and license binding (hardware fingerprint); on the roadmap, not yet generally available
FAQ

Common questions

Is AegisWire 'quantum-proof' or 'unbreakable'?

No — and we deliberately avoid those words. AegisWire is hybrid post-quantum by design: it combines a well-understood classical key exchange with the standardized ML-KEM-1024 (FIPS 203) post-quantum KEM so that if either is later found weak, the other still protects the session. It is designed to resist harvest-now-decrypt-later attacks, where traffic recorded today could be decrypted by a future quantum computer.

Which certifications does AegisWire hold?

None — and we won't pretend otherwise. AegisWire is built to be judged on the engineering: a memory-safe Rust core, hybrid post-quantum cryptography mandatory from packet zero, SBOM-backed signed reproducible builds, and tamper-evident audit logs you can verify yourself.

What cryptography does AegisWire actually use?

Sessions establish a hybrid secret from a classical X25519 exchange plus the ML-KEM-1024 (FIPS 203) KEM, with ML-DSA-87 (FIPS 204) for identity and signed artifacts, mandatory from packet 0 with no classical-only fallback. The private handshake is Noise-rooted (XX/IK trust shapes) with the ClientHello-equivalent HPKE-sealed for packet-0 metadata privacy, and post-compromise security is provided by per-stream forward-secure key evolution.

How is AegisWire different from a consumer VPN or an overlay network tool?

It is a purpose-built transport rather than a repackaged tunnel. Trust is established at session start (not assumed after connection), routing follows signed policy (not device-local heuristics), anti-replay and anti-amplification are enforced at the protocol level, telemetry is metadata-only by default, and you can run it self-hosted or sovereign — not SaaS-only.

Can we run AegisWire on our own infrastructure or air-gapped?

Yes. Self-hosted / sovereign deployment is customer-operated under licence with full infrastructure control, data-residency alignment, and air-gap compatibility. The same trust architecture, signed-artifact pipeline, and policy enforcement operate identically across Managed SaaS, dedicated hosted, and self-hosted models.

Is the hardware appliance available now?

No. The hardware appliance — a pre-loaded gateway and control plane with hardware-rooted trust and license binding — is on the roadmap for air-gapped and high-assurance environments, but is not yet generally available. Managed SaaS, dedicated hosted, and self-hosted are the deployment models offered today.

How is AegisWire priced?

Through a hybrid model across four motions: Self (license-first, capacity-bounded), Managed (hosted, traffic-bounded with overage), Enterprise (reserved capacity plus governance/SLA, from roughly $100k/year), and GOV (dedicated, quote-led, from roughly $200k/year). Self and Managed offer bounded self-serve plans; Enterprise and GOV are sales-led. Pricing is set by capacity packs (reserved throughput), entitlement caps, support tier, and traffic where hosted.

The bigger picture

How AegisWire relates to the rest of ITLOX

RadMah AI

Generates synthetic OT/security data for training and validation.

RadMah Sentinel

Policy and evidence workflows where applicable.

Next step

Bring one network boundary, one deployment constraint or one partner-integration idea. We'll map the controls and the evaluation path.