PDF

NetCrunch Connection Cloud (NCC VPN)

A resilient, secure platform for zero-configuration access to NetCrunch from any location — ideal for modern, zero-trust environments.

Overview

NetCrunch Connection Cloud (NCC) provides a reliable, secure, and cost-effective way to access the NetCrunch Server from any location without requiring firewall changes or VPN configuration. Much like point-to-point VPNs, NCC establishes an encrypted HTTPS tunnel from the server to the cloud — enabling remote access without exposing any inbound ports.

Unlike traditional VPNs, NCC does not expose the internal network. Instead, it functions as a relay, brokering HTTPS connections from clients (e.g., Console, Browser, Probe) to the server.

The only requirement is that the server must be able to make an outbound connection on port 443.

Key Features

Zero Configuration Access

  • No need to expose ports or reconfigure firewalls.
  • The NetCrunch server connects outbound to the NCC service.
  • Users connect using a simple ID (your license number).

Optimized for Zero Trust Environments

  • No inbound connectivity required to your internal infrastructure.
  • Minimizes attack surface and simplifies perimeter security.
  • Works with any network that allows outbound HTTPS traffic.

High Availability & Regional Redundancy

  • NCC runs in multiple regions for low-latency, fault-tolerant access.
  • Connections are relayed via the geographically closest NCC node.

Secure Data Transmission

  • No data is stored in the cloud — NCC functions purely as a tunnel.
  • HTTPS is used end-to-end between client and server.
  • NCC never sees decrypted monitoring data or credentials.

Enterprise Customization

  • Enterprise customers can request a private NCC node, ensuring that connections bypass public relays entirely.
  • Enables complete isolation and compliance with sensitive data requirements.

Full Client Compatibility

NCC supports secure connection from:

  • Desktop Console — Choose “Connection Cloud” and enter your license ID
  • Monitoring Probes — Use @<license-id> instead of an IP address
  • Web Console — Open https://ncconsole.net/rc/connect/<license-id> in your browser

The <license-id> is your NetCrunch license number, visible in the About box of the Console.

GDPR Compliance

NCC is designed from the ground up to comply with strict privacy laws like the GDPR.

Data Privacy by Design

  • NCC stores no personal data or monitoring content.
  • It acts solely as a connection broker, forwarding encrypted HTTPS traffic.
  • No metadata is retained about sessions beyond what is required to establish routing.

Regional Data Flow

  • Connections are routed through the closest NCC region.
  • Regional relaying helps reduce cross-border data movement.
  • For enterprise customers, private relays can be deployed in specific countries or data centers.

Enterprise-Level Security

  • Exclusive nodes ensure single-tenant isolation.
  • Supports secure TLS transport with certificate validation.
  • Multi-factor authentication is supported now, on every connection type including NCC. See NetCrunch Security Features.
  • Future roadmap includes support for SSO.

By meeting these criteria, NCC helps organizations stay compliant while maintaining top-tier network security.

Why Choose NCC?

  • Perfect for remote workers, branch offices, and MPLS-free environments
  • No NAT, port forwarding, or VPN configuration
  • Maintains outbound-only security posture
  • Enables a true zero trust deployment model
  • Backed by high-availability relay infrastructure

Connecting

To connect using NCC:

  • Desktop Console → choose Cloud Connection and enter your license ID (e.g., @YZ-123-456)
  • Monitoring Probe → enter @<license-id> in the server field
  • Web Console → visit
    https://ncconsole.net/rc/connect/<license-id>

The license-id is your NetCrunch license number.

Cloud NCC Relay Excerpt from the NetCrunch Connections diagram — highlighting the Cloud Relay (NCC) communication model.
Diagram created using NetCrunch Graphical Views.

Related Topics

cloudconnection cloudnccsecure connectionvpnzero trust