UPDATED 09:01 EST / JANUARY 17 2018

CLOUD

Cloudflare’s new secure access service takes a page from Google

Cloudflare Inc. today rolled out a new service designed to make it easier for the world’s growing population of mobile workers to access company systems when they’re away from the office.

Employees at most enterprises currently have to use virtual private network tools for the task, which can be quite cumbersome. The main issue is that loading times are often slow since VPNs route traffic through a specialized server for security purposes. Cloudflare Access, as the newly announced service is called, is positioned as a more convenient alternative.

The offering implements elements from a security model called BeyondCorp that was originally developed by Google LLC to save its employees the hassle of using VPNs. At a high level, the approach involves substituting a virtual private network with several other technologies that can provide the same result, but in a way that doesn’t hurt the user experience.

The first piece of the puzzle is encryption. Cloudflare Access sends all traffic over a secure HTTP connection and gives organizations the option of assigning a digital certificate to each employee device. The certificate acts as a sort of seal, enabling companies to verify cryptographically that an endpoint is authorized to make a connection.

From there, Cloudflare Access can be used to authenticate users with an enterprise’s identity management service of choice. Cloudflare said the offering works with “most” major platforms in the category, including Microsoft Corp.’s Azure Active Directory and Okta.

These integrations provide administrators centralized control over who can access what in the corporate network. A company could, for example, mandate that only certain senior staffers may remotely access an important application. It’s also possible to enforce rules at the group level.

If a user violates their organization’s policies, Cloudflare said, administrators can terminate sessions immediately. Important events are logged automatically in case they may be needed for a future audit.

Cloudflare Access will compete with Duo Beyond, a service from identity management startup Duo Security Inc. that is likewise based on Google’s BeyondCorp model. Cloudflare’s offering starts at $3 per user per month.

Image: Cloudflare

Since you’re here …

… We’d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.’s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we don’t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary on SiliconANGLE — along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams at theCUBE — take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.

If you like the reporting, video interviews and other ad-free content here, please take a moment to check out a sample of the video content supported by our sponsors, tweet your support, and keep coming back to SiliconANGLE.