PRODUCT OVERVIEW

The Industry-Only
Non-Human IAM@Edge

How it work

The trusted combination of Identity and Zero Trust

AxisNow is like The trusted combination of Okta and ZScaler (Auth0 and Cloudflare), but focus on non-human identity and traffic. Based on Client or Clientless proxies, providing a single platform for centralized management. It also offers the necessary speed, scalability, and reliability for production.

Self-hosted Edge

Designed for Non-Human, Made for the Edge

By deploying Edge on-demand flexibly in single cloud, multi-cloud, on-premises DC, or IaC, you can autonomously build a dedicated edge network (like Cloudflare, ZScaler). All traffic processing will be done in your environment, giving you full control over data and edge visibility.

Connect all your non-human endpoints

Identity-Centric and Zero-Trust Security

Just like Okta & Auth0. Use AxisNow as your application(workload) IdP.
Define your  application(workload) entity identity based on conditional combinations.

AxisNow aims to verify individual instances of applications(workloads) rather than users.
Ensure that only your applications and trusted devices(runtime environments) can access backend services.

Based on SDK Client, Headless Client, or Clientless.
It proxies your self-hosted apps or services, cloud services, and 3rd APIs.

Control your third-party DNS resolution on a single panel.
Implement dynamic resolution and failover based on policy routing.

Securely connect your internal private network.
Block inbound connections, no need for firewall configuration.

Policy-base Management

Non-Human Traffic Hub

Based on plugin-based policy engine allows you to control all access traffic on a single platform.
Flexible combinations easily handle various use cases.

Routing

SSL & TLS

AUTH

Request

Forward

Response

Logs

More Plugin

DSL Rule Engine

Like Lego, flexible custom matching conditions and actions.
Agility supports your business foreseeable or unforeseeable needs in development.

Insight

Full-stack Non-Human Observability

Gain real-time insights, track key metrics, and streamline debugging with our comprehensive observability suite.

Integrations

The Central Identity and Traffic Orchestration Layer

  AxisNow is committed to building a first-class security ecosystem, compatible with a range of heterogeneous environments, and seamlessly integrated with major IaaS, PaaS and SaaS, Trust and Credential Provider, IdP, EDR, SIEM, etc. We will continuously expand according to your use case needs.

Customize Your Edge

AxisNow Edge can be deployed flexibly in single cloud, multi-cloud, on-premises DC, or IaC environments. It runs in a variety of heterogeneous environments, providing you with complete control over your data, gateway visibility, and on-demand network coverage.

Connect Your Clients

SDK Client and Headless Client support a range of operating systems and runtime environments, deploying alongside your apps(workloads). They enforce device restrictions and posture checks through integration with EDR.

Connect Your Services

AxisNow allows you to configure fully customized HTTP and TCP applications.

Continuously integrate with modern APIs and services such as third-party SaaS APIs, API gateways, databases, and data warehouses, making it easy for you to connect.

Application (workload) identity verification

Trust Providers allow AxisNow to verify identities without the need for provisioning credentials or secrets.

Application (workload) identity verification is a core function. Only your own workloads — running in safe environments and communicating over secured connections — can use your APIs and backend resources.

AxisNow integrate with AWS metadata, GCP Workload Identity Federation, iOS App Attest / DeviceCheck and Google Play Integrity etc to provide the most comprehensive attestation

Runtime Secrets Protection

Credential providers (CPs) are systems that provide various types of access credentials, like OAuth tokens, API keys, or username and password pairs.

The credential providers delivers secrets “just-in-time” to the app only at the moment they are required to make an API call, and only when the app and its runtime environment has passed attestation. This ensures that sensitive secrets cannot be extracted from the app package or via MitM attacks. Developers also do not need to hardcode secrets. They can never be leaked.

Secure Access as Code

Build for Developers

AxisNow provides the SDK Client. It offers a native built-in secretless and zero-trust solution for your client apps.

Automates your DevSecOps. AxisNow delivers all features through standard APIs from the design stage.

1AxisNow SDK_Client axInstance = new SDK_Client
2({ workload_identity: workload_identity }).GetInstance();
3axInstance.Init(workload_identity, serect);
4
5RequestAddr proxy_config = axInstance.GetProxyConfig();
6SendRequest(proxy_config)
7...
8
9
10
11
12
13
14
15
16
17
18
19
1provider "axisnow" {
2    api_token = "1234567890abcdef"
3    Tenant   = "acme"
4}
5resource "axisnow_remote_network" "aws_network" {
6    name = "aws_remote_network"
7}
8
9resource "axisnow_edge" "aws_edge" {
10    aedge_id = axisnow_edge.aws_edge.id
11    name = "axisnow_edge"
12}
13
14resource "axisnow_connector" "aws_connector" {
15    remote_network_id = axisnow_remote_network.aws_network.id
16    edge_network_id = axisnow_edge_network.aws_access.id
17    updates_enabled = true
18}
19...
1import (
2        "fmt"
3        "net/http"
4        "io/ioutil"
5)
6
7func main() {
8        url := "https://api.axisnow.io/client/v1/policy/plugin_identifier/rules"
9        req, _ := http.NewRequest("GET", url, nil)
10        req.Header.Add("Content-Type", "application/json")
11        req.Header.Add("X-Auth-Email", "")
12        res, _ := http.DefaultClient.Do(req)
13        defer res.Body.Close()
14        body, _ := ioutil.ReadAll(res.Body)
15        fmt.Println(res)
16        fmt.Println(string(body))
17}
18
19

Ready to see
AxisNow in action?