Client-to-Site VPN
Client software dials a gateway — the classic corporate pattern.
How widely is it used?
Among the most widely deployed options in 2026The standard corporate pattern, though ZTNA is steadily taking its place at large enterprises.
How it works
Effectively the same shape as remote access, described from the client side: VPN software on the endpoint authenticates the user, negotiates keys, and installs routes for the networks it is allowed to reach.
Connects
VPN client → VPN gateway
Protocols
OpenVPN, WireGuard, IKEv2/IPsec, SSL VPN
Typical users
Employees, Admins, Contractors
Main use case
Remote work with per-user authentication and access scoping.
Advantages
- Easy to restrict what each user can reach
- Works with MFA and directory identity
Limitations
- Client software must be installed and kept updated
- Onboarding overhead per user