Network Fabric

TOORCE SD-WAN

Full-featured software-defined WAN with zero-touch automation — auto-discover, auto-provision, auto-detect, auto-failover, and auto VPN — built on a head and leg architecture that scales beyond 512 legs per head.

Full SD-WAN, fully automated

TOORCE SD-WAN builds and heals the WAN fabric without manual tunnel sprawl. Sites come online, paths are selected, and VPN overlays configure themselves.

01

Auto-Discover

Edges find the head and peer sites on the network automatically.

02

Auto-Provision

Zero-touch onboarding for new legs — push policy, pull config, go live.

03

Auto-Detect

Continuous path and health sensing across links, apps, and underlays.

04

Auto-Failover

Instant steering when a circuit or peer degrades or drops.

05

Auto VPN

Site-to-site overlays configure and renew themselves from the head.

06

512+ Legs / Head

Each head terminates and orchestrates more than 512 remote legs.

Head and leg architecture

A clear control-and-edge model: heads orchestrate the fabric; legs are branch, cloud, and remote sites that join automatically.

Head

The orchestration and aggregation node for the SD-WAN domain. Heads discover legs, push VPN and routing policy, monitor path health, and coordinate failover across the fabric.

  • Central auto-provision and policy distribution
  • Auto VPN configuration for all registered legs
  • Scale: 512+ legs per head
  • Path intelligence and failover coordination

Leg

Any branch, datacenter edge, or cloud site that auto-discovers its head, provisions itself, and joins the encrypted overlay with continuous health reporting.

  • Auto-discover head and underlay paths
  • Zero-touch join with auto-provision
  • Local detection of link and peer failure
  • Seamless failover under head policy

Automation stack

Every stage of the WAN lifecycle is automated so operators add sites instead of configuring tunnels.

Auto-Discover

Legs locate the assigned head and available transports. Peers and underlay options are learned without static peer lists.

Auto-Provision

Onboarding pulls identity, routing, QoS, and VPN parameters from the head so a new leg is production-ready in minutes.

Auto-Detection

Continuous probing of latency, loss, and reachability drives dynamic path selection and early warning before users notice.

Auto-Failover

When a circuit or peer fails detection checks, traffic steers to healthy paths while the overlay stays intact.

Auto VPN Configuration

IPsec and overlay tunnels are created, rotated, and torn down from head policy — no per-leg manual crypto setup.

Traffic Optimization

Dynamic path selection, load balancing, and cloud breakout keep application traffic on the best available route.

Built for large fabrics

One head can anchor a wide branch footprint without splitting domains for capacity alone.

512+ legs / head

Each head supports more than 512 legs for dense branch, retail, and distributed enterprise deployments.

Multi-head growth

Add heads as domains grow; legs continue to auto-discover and auto-provision into the correct head.

Unified with aNFW

Runs as part of the TOORCE advanced next-gen firewall stack — SD-WAN, security, and VPN in one fabric.

See TOORCE SD-WAN in your network

Validate auto-discover, auto-provision, failover, and head/leg scale against your branch topology.