QuWAN  Logo
QuWAN
The Best Enterprise Mesh VPN Solution

Say goodbye to traditional VPN limitations and automate your Mesh VPN setup! Build faster, more secure, and cost-effective enterprise-wide networks effortlessly.

Don't Let VPN Hinder Your Business Growth!

Traditional VPNs can’t keep up with modern business practices, hybrid work, or cloud adoption. This hinders operational efficiency and constrains business expansion.

Common Challenges:

  • Complex Configuration

    Manual setup for multiple devices is time-consuming and hard to manage.

  • Security Risks

    Poor access controls leads to vulnerabilities.

  • Lack of Flexibility

    Can’t adapt to remote work and multi-branch connection performance needs.

  • Insufficient Bandwidth

    VPN bottlenecks during high usage, impacting productivity and application performance, such as data access, video meetings, ERP systems, and cloud applications.

Why Choose QNAP QuWAN SD-WAN?

Auto Mesh VPN – So Easy, Anyone Can Do It!

QuWAN combines SD-WAN with VPN to automatically mesh-network all connected QNAP devices via Orchestrator—making deployment, management, and optimization simple and efficient.

  • Simpler

    • No need to change your current network—automated setup at your fingertips.
    • Cloud-based Orchestrator makes deployment easy, even for non-IT users.
  • Safer

    • Full support for identity authentication, data encryption, and Zero Trust principles.
    • Helps accelerate your path to SASE (Secure Access Service Edge).
  • More Cost-effective

    • Easily build networks using QNAP routers, QNAP NAS, and mobile devices.
    • Supports IPSec VPN integration with third-party routers, cutting deployment and maintenance costs.
  • Faster

    • QNAP QHora routers offer 2.5GbE / 10GbE ports and intelligent optimization, handling up to 1,000 VPN connections to boost LAN/WAN performance.

Worry-Free Multi-Site Deployment – Ideal for All Business Scenarios

Easily connect HQ and branch offices to one network environment, ensuring secure, real-time data transmission and streamlined workflows.

  • Application 1

    Retail Chain POS Data Sync

    Sync sales data in real time from POS systems to HQ ERP/CRM systems to improve operational efficiency.

    QuWAN helps instantly sync POS data to headquarters systems, improving operational efficiency.
  • Application 2

    Office-to-HQ Data Transfer & Backup

    Ensure reliable data and video surveillance backups from branches to HQ, enhanced by HBS and QuWAN SD-WAN.

    Combine HBS and QuWAN to reliably transmit sales and surveillance data back to headquarters, enhancing branch backup management.

SD-WAN Optimization + VPN Remote Access = High-Efficiency Networking

Centralized SD-WAN Management

Build a cost-effective enterprise Mesh VPN architecture.

  • Unified Cloud Management

    Orchestrator links QNAP QHora routers or NAS across branches—reducing IT effort.

  • NAS Direct Integration

    Even without a router, NAS with QuWAN Express can join the SD-WAN.

  • IPSec VPN Compatibility

    Easily integrate third-party routers via IPSec VPN without changing infrastructure.

QuWAN helps businesses build a multi-site Mesh VPN network with minimal cost.

Flexible VPN Access

Supports a large number of remote workers and mobile devices.

  • High Connection Capacity

    Supports up to 1,000 VPN clients.

  • QuWAN QBelt VPN Protocol

    QuWAN QBelt VPN protocol provides secure endpoint connections.

  • Using Existing Credentials

    Use existing credentials via SAML SSO and Authentication Server to ease IT management.

QuWAN with QBelt VPN allows remote offices and mobile devices to easily connect to the company’s multi-site network.

Expand Gradually with Minimal Budget

As your business grows and more devices are added, QNAP delivers scalable and flexible solutions for seamless upgrades across all growth stages.

Client-to-site VPN

  • No router needed

    Use NAS + QuWAN Express to instantly join SD-WAN. Remote users securely access the NAS via VPN.

    Set up QuWAN Express on the NAS to instantly join the SD-WAN, allowing remote users to securely access the NAS via VPN.
  • Router needed

    Add a QHora router for increased client connections and routing/bandwidth optimization.

    Deploying QHora enables a high-connection-capacity single-point VPN with optimized routing and bandwidth.

Peer-to-peer VPN

  • No router needed

    Enable QuWAN Express on different NAS sites and set Super Node to join Orchestrator—establish peer-to-peer VPNs for simple data exchange.

    Set up QHora at Site B to connect NAS at both A/B sites and let devices securely access them via SD-WAN.
  • Router needed

    Deploy QHora at Branch B to connect NAS A and B. Computers and servers at Branch B can also access NAS A securely via SD-WAN, improving inter-site performance and safety.

    Deploying QHora enables a high-connection-capacity single-point VPN with optimized routing and bandwidth.

Multi-site VPN

  • No existing setup

    Deploy one QHora at HQ to link 3+ branch NAS units. Add more QHora at branches as needed for full-network VPN and SD-WAN optimization.

    Deploying QHora at headquarters allows connection to multiple branch NAS devices with centralized routing and access management.
  • With existing setup

    Use Route-based IPSec VPN to link existing routers (Fortinet, AWS, Ubiquiti, Cisco, Azure) with QHora and expand SD-WAN. VMware ESXi servers can also run QuWAN vRouter VM to join the SD-WAN.

    Businesses can use route-based IPSec VPN to connect headquarters with QHora and quickly expand a multi-site SD-WAN.

Powerful Centralized Cloud Control — QuWAN Orchestrator

QuWAN Orchestrator enables centralized monitoring, device management, and auto-mesh setup—letting IT remotely deploy network infrastructure without site visits.

Intelligent SD-WAN Optimization

QuWAN supercharges your enterprise network with bandwidth aggregation, QoS, and Hybrid Multi-WAN—ensuring smooth, uninterrupted remote connections.

Bulletproof Security

QuWAN adopts a Zero Trust model and layered security mechanisms to build an intelligent and secure network that aligns with SASE principles. This creates a secure network for all your workers in HQ, branches, and those working remotely.

Network Perimeter

  • Intrusion Prevention System (IPS)

    Detect and block threats with signature-based inspection and real-time packet scanning.

  • GeoIP Firewall

    Block high-risk or unauthorized traffic by IP geolocation.

  • Application & Endpoint Management

    • L7 Firewall + DPI : Deep packet inspection to block high-risk services, with Web Filter for usage controls.
  • Identity & Access Security

    • Authentication Support : LDAP, AD, SAML SSO support—enforce access control by user/device under Zero Trust.
    • End-to-End Encryption : IPSec AES-256 encryption for secure data transmission and protection from snooping or man-in-the-middle attacks.
  • Internal Network Protection

    • L3 Firewall + NAT : Centralized policy management via QuWAN ensures internal network protection across all sites and reduces misconfigurations.

Over 10,000 QuWAN SD-WAN Devices Adopted Worldwide

LCO (Le Cliniche Odontoiatriche)

"QNAP's SD-WAN solution has made our network more resilient, efficient, and secure, enabling us to optimize costs and enhance the productivity of our clinics."

- Maria Serena Romiti, CEO of LCO – Le Cliniche Odontoiatriche

CyberTech Engineering

"There are different challenges in caring for each PWSA patient. With the convenient service of QNAP QuWAN, social workers at various PWSA locations can quickly access care information securely to make the service process smoother."

- Chairperson of the PWSA Taiwan – Dr. NI-CHUNG LEE

Choose Your QHora Router – Up to 1,000 VPN Connections

Need Help?

The QNAP team can assist you in deploying an SD-WAN.

FAQ

To enable QuWAN SD-WAN, go to the QuWAN Settings page in QuRouter, log in with your QNAP ID, and follow the on-screen wizard to complete the "Network Topology Setup" and "Network Conflict Check" steps. The setup process takes just one minute. Once enabled, you can manage your devices and network settings using the QuWAN Orchestrator platform.

QuWAN supports various network topology modes, including Hub-to-Spoke, Mesh, and hybrid topologies. By assigning each device a Region and Role, devices in your organization will automatically establish IPSec VPN tunnels. Edge devices will connect to the Hub within the same Region, and communication between Edge devices across different Regions will be routed via the Hub. For more information on QuWAN topology logic and application, go to: https://www.qnap.com/en/how-to/faq/con_show.php?cid=3124

To designate a QNAP router as a Hub—the central node of your VPN—even when it's deployed behind a firewall, configure the firewall to forward the required service ports to the QNAP router. It will then function as a VPN Hub as expected. For port forwarding requirements, go to: https://www.qnap.com/en/how-to/faq/con_show.php?cid=3023

QuWAN supports the Backhaul Internet feature, which routes network traffic from branch offices back to the headquarters for internet access. Simply enable this feature in the Backhaul Internet page of QuWAN Orchestrator for the desired branch device to enable centralized outbound network management.

QNAP routers support Policy-based Routing (PBR), which allows you to route specific types of traffic through a designated WAN port, IP, or VPN tunnel—giving you flexible control over data flow. For configuration instructions, refer to: https://www.qnap.com/go/how-to/tutorial/article/how-do-i-configure-policy-based-routing-in-quwan-orchestrator

QuWAN supports standard IPSec VPN in Route-based mode. Once the VPN is established between both ends, local services can route traffic through the VPN to reach remote networks. This enables seamless integration of QuWAN SD-WAN into your existing network environment—ideal for building flexible site-to-site VPNs. You can find more information for setting up site-to-site VPN at the following link: https://www.qnap.com/go/how-to/search?q=site-to-site%20vpn&tags=QuWAN

QuWAN offers the Segment feature, which lets you create a template that includes both QoS settings and firewall rules, then apply it across multiple devices by assigning them to the same Segment group. You can manage this under Common Settings > Segment in QuWAN Orchestrator.

Give us your feedback!

If you have any recommendations or suggestions for improving QuWAN, please feel free to submit your feedback in below User feedback form, which can also be accessed via QuWAN Orchestrator.

Choose specification

      Show more Less

      Choose Your Country or Region

      open menu
      back to top