tencent cloud

Product Overview

Unduh
Mode fokus
Ukuran font
Terakhir diperbarui: 2026-09-08 19:44:07
Diterjemahkan & Diperiksa oleh AI
iOA SaaS, hereinafter referred to as "iOA", is an office security product independently designed and developed by Tencent based on the zero trust security philosophy and internal practices. It provides customers with integrated terminal security capabilities, covers various office scenarios on terminal devices, and builds core security capabilities such as zero trust access, terminal management, security protection, and data leak prevention through a single client, helping enterprises create a secure, stable, and efficient office environment.

Core Concepts and Architecture Design

Zero Trust Principles

Follow the security principle of "never trust, always verify" to break the traditional assumption of private network trust. Perform dynamic identity verification and least-privilege access control on all access requests, regardless of whether the visitor is on a private or public network.

Integrated Office Security Platform

iOA covers security capabilities such as zero trust access, unified endpoint management (UEM), endpoint protection platform (EPP), and software management, delivering integrated terminal security control.

Product Features

Zero Trust Secure Access

iOA follows the zero trust philosophy to build a new identity-centric network security perimeter. It reduces the business attack surface through technologies such as connector reverse connections and SPA single-packet authorization, eliminating the need to expose private IP addresses. It also continuously verifies user identities, terminal environments, and access permissions, and applies dynamic access control to ensure security during user access to enterprise applications. This helps enterprises achieve secure application access and supports efficient office work for employees anytime and anywhere.

Endpoint Protection Platform (EPP)

iOA supports terminal antivirus EPP to quickly detect and handle various security threats on terminals. It supports virus detection, vulnerability remediation, ransomware protection, and phishing protection, helping enterprises shift from reactive to proactive defense in the complex and ever-changing network attack and defense landscape by quickly detecting threats, responding promptly, and tracing their sources.

Unified Endpoint Management (UEM)

iOA provides flexible terminal management methods and diverse terminal control policies to help enterprises perform proactive terminal management and reduce potential security risks. It supports hardware and software information collection, group management, runtime monitoring, security reinforcement, software management, pirated software detection, peripheral control, file control, and watermark control on terminals. It centrally manages and operates enterprise terminals, making all terminal assets visible, controllable, and manageable across the enterprise.

Network Access Control (NAC)

iOA provides NAC capabilities and supports multiple access methods, including 802.1x authentication, MAC authentication, and Portal authentication, covering network access management for various terminal types such as employee terminals, guest terminals, and dumb terminals. It also supports full lifecycle management, including basic network configuration, access control policy deployment, access auditing, and troubleshooting. This ensures trusted identities, compliant states, and controlled behaviors for terminal network access, helping enterprises build a secure and orderly network access boundary while ensuring that private network resources are accessible only to trusted terminals and users.

Product Architecture

iOA is a terminal security product independently designed and developed by Tencent based on the zero trust security philosophy. In its architecture design, iOA draws on the design concepts of Zero Trust SDP (Software-Defined Perimeter) and consists of components such as the Zero Trust Control Center, Zero Trust Security Gateway, and Zero Trust Client. It builds multiple security capabilities across four dimensions: trusted access, terminal management, intrusion prevention, and data protection, helping customers address terminal security issues in various scenarios.


Deployment Mode

Deployed on Tencent Cloud, it is ready to use out of the box and can be purchased flexibly on demand.
It can go live quickly without complex configuration, meet the needs of different enterprise levels, and reduce initial investment costs.
It supports automatic updates and maintenance, ensuring the system is always up to date and reducing IT Ops burden.

Bantuan dan Dukungan

Apakah halaman ini membantu?

masukan