How it works

Router first. Console second.

Desks use the EDGE as gateway and DNS. The edge owns the path. The console helps operators manage it. It does not carry your internet.

Traffic path

From desk to your ISPs.

One clear chain. Mid-session ISP hop is forbidden. Sticky path is the product.

01

LAN ingress

Office DHCP points gateway and DNS at the EDGE. Desk traffic enters one controlled edge.

02

Perimeter checks

Anti-spoof and firewall policy run first so unwanted traffic never reaches the sticky fabric.

03

Sticky multi-WAN

Live sessions stay pinned to their ISP. New sessions follow Active-Active weights from the latest link quality.

04

ISP egress

Traffic leaves on the marked WAN. If that ISP fails later, existing flows drain on their path. New work moves to a healthy link.

Firewall appliance network ports

Fail-safe

What survives a console restart

If the dashboard stops, the office must keep working.

  • Sticky paths and NAT keep forwarding
  • Last WAN weights and QoS stay applied
  • Management services come back on their own

Day-to-day

Tune weights. Do not rebuild the path.

Safe weight updates

New-session weights update cleanly. Unchanged results skip rewrite. Dangerous all-links-off states are refused.

Full rebuild needs a window

Rebuilding the sticky fabric can briefly disrupt. Use it at install, planned maintenance, or on a cold spare.

Operations atmosphere

Prove it

Stop the console. Browse still works.

Operators prove the edge with real health checks, not with a marketing animation.

  • Fabric health is visible to operators
  • Saved WAN and firewall state returns after reboot
  • Live flows keep their ISP path until they end

Security

Same path. Hardened controls.