Glossary

Web- and Browser-Based Access

Identity Access Management

What is Web- and Browser-Based Access?


Web- and Browser-Based Access refers to the ability to securely connect to applications, systems, or remote environments using a standard web browser, without installing client software, VPNs, or endpoint agents. This access model leverages modern HTML5 technologies, web-based protocols, and secure session proxying to deliver full-featured remote access within a browser window. It is commonly used in Zero Trust Network Access (ZTNA) architectures, secure remote access platforms, and critical infrastructure settings where minimal endpoint footprint is preferred.


Why is Web- and Browser-Based Access Important?


As organizations modernize their remote access strategies, the traditional approach of deploying heavyweight client software, jump servers, or VPNs to each user device is becoming unsustainable. These methods increase IT complexity, create endpoint risk, and often don’t align with the operational realities of OT environments, third-party contractors, or mobile field teams.

Browser-based access removes this friction by enabling secure, zero-footprint access from any device with a compliant browser. This model supports Zero Trust Access, remote desktop connectivity, and third-party access workflows without giving users full network-level access or exposing internal infrastructure. It’s especially valuable in ICS and critical infrastructure settings, where access must be tightly controlled, observable, and compliant with standards like NIS2, NERC CIP, IEC 62443, and TSA SD02E.

By reducing dependencies on endpoint software, browser-based access also improves scalability, accelerates onboarding, and ensures consistent user experience across platforms.


How Does Xona Help with Web- and Browser-Based Access?


Xona is built from the ground up to deliver secure remote access through the browser; no client software, VPN, or plug-ins required. Users authenticate through existing identity providers and launch sessions to critical OT and ICS systems directly from a secure, browser-based interface. Supported protocols like RDP, VNC, SSH, and web applications are all proxied and isolated from the user’s device, ensuring complete separation between insecure endpoints and operational systems.

This browser-based approach enables secure third-party access, zero trust remote login, and role-based access control without needing to deploy software to unmanaged or contractor devices. Sessions are fully recorded, auditable, and policy-enforced, meeting the most stringent operational and regulatory standards.

Whether your users are in the field, at a vendor site, or working remotely, Xona provides simple, secure, and scalable browser-based access to the world’s most sensitive infrastructure, without compromising speed, safety, or control.

Frequently Asked Questions

What is the primary advantage of browser-based access over traditional remote access methods?

Browser-based access eliminates the need for VPNs, client software, or endpoint agents, allowing users to connect securely from any compliant browser with minimal setup and reduced risk to critical systems.

How does browser-based access support Zero Trust principles?

It enforces session-level isolation and least-privilege access without exposing internal networks, aligning with Zero Trust principles that assume no inherent trust in users, devices, or locations.

Is browser-based access suitable for critical infrastructure and OT environments?

Yes, when implemented with session proxying through protocol isolation, browser-based access enables secure interaction with OT systems while meeting strict security and compliance requirements.

What security risks are reduced by using browser-based access?

It mitigates risks associated with unmanaged endpoints having open network connectivity, lateral movement, and malware/ransomware spread by keeping all sensitive activity confined to a secure, disconnected session environment.

How does Xona deliver browser-based access to OT and ICS systems?

Xona proxies RDP, SSH, VNC, and web protocols through a hardened gateway, allowing users to securely access critical systems via any modern browser while isolating the user endpoints from the operational network.

Can browser-based access be used by third-party contractors without installing software?

Yes, Xona enables secure, policy-controlled access for third-party vendors, contractors, OEMs, and remote users via the browser alone, making it ideal for third-party access without requiring local installations or elevated privileges.