One secure overlay. Many underlying paths.
High-level architecture for technical readers. No source code, internal addresses, ports or deployment secrets are exposed here — this page describes structure and behaviour only.
REFERENCE ARCHITECTURE
Corporate HQ, branches and mobile users on a common overlay.
Transport independence
The overlay does not depend on any single carrier or technology. Sites use the paths available to them; the corporate addressing and connectivity model stays stable above the transports.
Encrypted overlay
Corporate traffic is encrypted between overlay endpoints, making shared and public underlays — Internet, hotel Wi-Fi, cellular — viable corporate paths within a wider security architecture.
Failure & recovery
When a path becomes unavailable or degraded, connectivity moves to surviving paths where the deployment supports it, and returns when the path recovers — with events visible to operations teams.
ROAD WARRIOR · WINDOWS MOBILE CONNECTIVITY
Secure connectivity for people on the move.
Enterprise connectivity does not stop at the branch office. Lira-VPN can also provide secure connectivity for authorised Windows users working away from the corporate network.
- Who: travelling staff, remote workers, field engineers, managers between locations, temporary work sites.
- How: Lira client on Windows over home, office, hotel/guest or mobile-broadband Internet.
- Scope honesty: Lira provides the secure connectivity path. Endpoint security, device management, EDR and Zero Trust enforcement are separate capabilities — claimed only where explicitly implemented and verified.