HTML5 RDP in any browser, or a signed .rdp for the full Windows client. Nothing to install for users.
Backend IPs never reach the client. Per-session tokens, AD/OIDC SSO, 2FA, role-based access, full audit trail.
A hardened appliance image with node-locked licensing and signed, one-click updates that roll back on failure.
One console, deploy in minutes, built-in TLS — automatic Let’s Encrypt, your own certificate, or self-signed.
Browser or Windows client
TLS on :443 · SSO + 2FA
Windows RDP hosts, unexposed
Users authenticate against your identity provider (Active Directory or OIDC) with two-factor — before any desktop is reachable.
The gateway issues a time-limited token and brokers the connection. The real host IP is never handed to the client.
Work in an HTML5 tab or launch the native client with a signed .rdp. Sessions are logged and can be cut off in one click.
Users sign in once and see only their assigned desktops, in folders — Finance, IT, Executive. Connect in the browser or launch native in a click.
Live CPU, memory and disk, service health, license utilisation and version — the operational overview on the first screen.
Every active session across the appliance, with one-click disconnect and a full connection audit for compliance.
Upload a cryptographically-signed update bundle. The appliance verifies it, applies it atomically, and rolls back automatically if anything isn’t healthy.
| Maple Gateway | Big-vendor ADC gateways | |
|---|---|---|
| Clientless HTML5 + native RDP | ✓ Both, built in | Add-on / separate stack |
| Standard MS RD Gateway protocol | ✓ Native client, no ticket | Proprietary SSL proxy + ticket |
| SSO (AD / OIDC) + 2FA | ✓ Included | ✓ Included |
| Backend IP hidden from client | ✓ Per-session token | ✓ STA ticket |
| Self-hosted appliance you own | ✓ XCP-ng / XenServer / VMware / Hyper-V | Large ADC appliance |
| Per-user cloud licensing | ✓ None | Often required |
| Signed, rollback-safe updates | ✓ From the browser | Vendor process |
| Stand up in an afternoon | ✓ 15-minute setup | Specialist deployment |
Stand up a branded gateway per client on your own hardware — secure remote access without a cloud tenant or per-seat bill.
Give staff browser access to their office Windows desktops from anywhere, with SSO and 2FA, no VPN client to manage.
Grant time-boxed, audited access to specific desktops — and revoke it in one click when the engagement ends.
Every session authenticated, authorised and logged, with the backend never exposed — the audit trail your assessors ask for.
Contact Maplenetworks for current pricing and tier limits.
Import the appliance into XCP-ng, XenServer, VMware or Hyper-V and you’re on the setup wizard in about fifteen minutes. Tell us a little about your environment and we’ll send the image and a licence key.