Secure access, wherever you are

Whether you're at the office or on the road, you always work in the same environment.

Remote workers and travelling employees connect through a WireGuard VPN, a modern encrypted tunnelling technology recognized for its speed and robustness. Every connection is authenticated and encrypted end-to-end — your data never travels in plain text over the Internet.

At the office, your local network connects directly to your cloud environment through a secure, permanent link managed by a professional pfSense firewall. Your teams access their tools without any extra steps, as if the servers were right next door.

A centralized work environment

At the heart of the infrastructure, a Windows Terminal Server hosts your work sessions and applications. In practice:

  • All your employees work with the same tools, the same versions, from any device.
  • Your working documents are centralized — no more files scattered across individual workstations.
  • A lost or broken computer means zero data loss — everything stays on the server.

A double layer of protection

Security never relies on a single piece of equipment. Before reaching your servers, all traffic crosses two firewall layers: your site's firewall, then the cloud environment's firewall. Every flow is filtered, controlled and logged. Only legitimate connections ever reach your data.

Your data backed up, three times over

Because no business can afford to lose its data, our architecture applies a multi-level backup strategy:

  • Continuous automated backups — A dedicated UrBackup server regularly copies your documents and systems, with no intervention required on your part.
  • External storage space — Your backups are replicated to a separate storage area, outside the production environment.
  • Full disk images — Complete copies of your servers are stored outside the cloud. In the event of a major incident, your entire environment can be restored quickly.

This approach follows the golden rule of backup — the "3-2-1" strategy: multiple copies, on multiple media, with one kept isolated from the main system.

Overview of your cloud environment

Each component plays a precise role in the security and availability chain.

OpenCanopea cloud infrastructure diagram
1
WireGuard VPN Encrypted remote access for external users
2
Cloud environment Hosted zone containing servers and services
3
Office firewall pfSense linking the office to the cloud
4
Virtual network Central interconnection point for all access
5
Terminal Server Remote Windows work sessions
6
Cloud firewall pfSense filtering internal traffic
7
UrBackup server Automated backups of data and systems
8
Working documents Centralized file storage for users
9
External backup space Replication of backups outside production
10
Disk images Complete copies stored outside the cloud

What your business gains

What you gain How
Mobility Full access to your work environment from anywhere, securely.
Peace of mind Automated multi-level backups, without any intervention from your teams.
Business continuity Quick restoration possible even after a major incident.
Simplicity A single, centralized environment — easier to manage and scale.
Security Encrypted connections and dual firewall filtering.

Want to learn more?

Contact us for a demonstration or a personalized assessment of your needs. We tailor this architecture to the size and constraints of your business.