Managed VPNs: Encrypted Tunnels Between Your Teams and Cloud
Togglebox deploys and manages IPsec (Internet Protocol Security) and OpenVPN tunnels on pfSense (open-source firewall/router) appliances for team remote access, site-to-site links between offices and cloud, and restricted-access policy from day one.
IPsec and OpenVPN protocols secure data between users, offices, and cloud networks.
Connect offices, colocations, and cloud environments with routed tunnels.
Restrict VPN users to only the subnets and ports their role requires.
We handle tunnel setup, client profiles, key rotation, and ongoing changes so your team stays focused on shipping.
Part of our Network Security Solutions platform. Also available: Managed Firewalls and Managed Virtual Routers.
Managed VPN hosting for teams, offices, and hybrid cloud
A VPN creates an encrypted, authenticated path between users or networks and your Togglebox infrastructure. Managed VPNs run as pfSense virtual appliances, so you get secure connectivity without rebuilding your network edge.
Remote-user and site-to-site access
Support remote teams and inter-office connectivity with managed IPsec and OpenVPN tunnel design.
Policy-aligned network reachability
Limit access by subnet and port so users and connected offices can reach only the systems they need.
Operational support and tuning
Improve reliability with MTU/MSS tuning, route checks, and ongoing change support as your network grows.
Protocol and policy design built around your environment
Choose the right protocol
We support IPsec for site-to-site interoperability, OpenVPN for flexible remote-user access, and WireGuard where supported. We help you choose based on your security goals, device mix, and performance targets.
Build performance and security in from day one
We size CPU and bandwidth for expected tunnel load, tune packet sizes to prevent fragmentation, and apply restricted firewall rules so VPN users reach only the systems they need. If you also need routing or NAT control, see Managed Virtual Routers. Need to lock down public exposure too? Explore Managed Firewalls.
Common VPN use cases
Remote worker access
Site-to-site tunnels
Cloud-to-cloud connectivity
Split tunneling vs. full tunneling
Split tunneling
- Routes only private-network traffic through the VPN
- More efficient because general internet traffic goes direct
- Requires explicit subnet routing so sensitive traffic stays encrypted
Full tunneling
- Sends all traffic through the VPN
- Simplifies security monitoring and policy enforcement
- Uses more bandwidth, so it is usually the better fit for compliance-heavy environments
We help you pick the right model based on your applications, compliance requirements, and how your team works.
Setup and ongoing support
Togglebox engineers help you plan subnets, configure tunnel parameters, and align firewall policy. We stay available for change support as you add networks, users, or sites.
Pricing and ordering
Pricing starts at $25/month + server resource costs. We help you size resources based on tunnel count, expected throughput, and planned features.
Need deeper routing and NAT control? Explore Managed Virtual Routers.
Trusted by businesses that rely on real support
“In every deployment our dev team scoped, Togglebox was the best value. The approach makes sense — pick your resources and allocate them across your machines however you want.”
Common Questions
How is ImunifyAV+ different from Imunify360?
ImunifyAV+ focuses on malware scanning and cleanup. Imunify360 adds layered controls such as WAF and broader intrusion protection.
How do I choose between firewall, VPN, and virtual router services?
Choose firewall for boundary control, VPN for encrypted remote access, and virtual routers for routing or segmentation design.
Can I get help reviewing my security architecture?
Reach out to a security engineer for a fit and sizing review.
No matching questions found.
Ready to deploy a managed VPN?
Tell us your access and security requirements. We will design the VPN configuration and deploy it for you.
Managed by Togglebox engineers, backed by 20+ years of hosting experience.