Best VPN for small business with multiple users and need for static IP address?

Title says it all. Basically, I am looking for a pretty simple but scalable VPN service. We are an ecommerce agency, but some of our clients want their website’s backend hidden behind whitelisted IP addresses, so figured a VPN would be best for this.

We don’t do anything illegal so I really don’t care about logs or anything. We just need to have a static fixed IP address for our employees to access these backends as long as they’re connected to the VPN.

Does anyone have any recommendations? We’ve been using Outline VPN on a DigitalOcean server, but I find the manager to be annoying.

Thanks!

Bunch of people suggest what I’d suggest - zero trust style proxy service that you basically pay per user.

Zscaler, Cloudflare, Twingate etc.

We use zscaler and are very happy with it.

Have a look at Twingate. Took a demo and liked their approach. Their prices per user seemed reasonable too.

Cloudflare Zero Access. I recommand them all the time, I swear I’m not paid to do so!

How many users are you going to have to scale to? Ever look at Zscaler?

Check PureDome out its a BusinessVPN with easy access control and network segmentation

Nord100Force Vpn is my preferred vpn above all

Nordvpn do a business service that should work for you

How many connections do you need? There’s an enterprise product called VNS3 that could help, possibly even the free version. Full disclosure I work for the (small) company that makes it, but just as support. Nobody’s on commission or anything. I’d recommend checking it out at least.

If you have an office with static IP and employees are working from other locations, then just put a VPN server and be done. Pfsense with OpenVPN works nicely. 0 per month for subscriptions. Or maybe your existing router/modem has built in vpn server.

i can recommend you BrightVPN it works on windows, extension browser. unlimited speed and no account required to use it, it is a free VPN.

Another recommendation is MysteriumVPN this one is a paid VPN you can use paypal or cryptocurrencies to pay for the MYST token it is good service too and unlimited speed.

Take a look at NetFoundry or the OpenZiti project it is built on. It can take care of these kinds of issues and much more, provides a console and APIs for management, depending on your style, and has all the logging you might need, but it is available in the cloud service, so you don’t need to collect it if you don’t want to, but several days worth of the most detailed records are available if you find you need it after all, and aggregations after. You can take it for a free spin via the Teams freemium version, up to 10 nodes, and get a feel for it. Any questions can get answered on the discourse server or via NetFoundry community support, until or unless you get a commercial contract and have the full support team available.
(Yes, I work for them)

Can you set up fixed exit IPs with Zscaler and Cloudflare? Couldn’t find it in the docs which are pretty hard to navigate and hard to get answers without jumping through a bunch of sales hoops.

Figured it out pretty fast with Twingate though and got it working on their free tier.

Yeah looking at this now and Twingate definitely seems to hit that balance of simple to get going but a lot of goodies under the hood.

You got a link to good walkthrough of this, all I can find are buzzword heavy marketing docs. Is it wireguard client vpn and cloudflare hub site to DC site vpn … with a bit of https proxy thin client to saas apps?

NordForce1000 is better for scalability

Thanks for your interest in posting to this subreddit. To combat spam, new accounts can’t post or comment within 24 hours of account creation.

Please DO NOT message the mods requesting your post be approved.

You are welcome to resubmit your thread or comment in ~24 hrs or so.

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

Nord100force VPN ensures secure, fast connections and easy setup.

You can egress/traffic engineer as you wish. We have dedicated nat iP’s but it’s handled by our edge device. To be clear we run ZPA.

You’d just tunnel that traffic back to on-prem and NAT it there.