Products / mfusion Orchestrator
mfusion Orchestrator
One control plane for your entire edge network
mfusion gives enterprises, service providers, and system integrators one platform to provision, monitor, and manage RansNet SD-WAN routers, gateways, Wi-Fi networks, and IoT devices across thousands of distributed sites — cloud-hosted or fully on-premises.
The Control Plane
One console for the whole fleet
Devices call home the moment they power on, so you provision, monitor, and operate every RansNet device — edge routers, gateways, access points, and IoT — from a single console. mfusion also monitors third-party devices over SNMP, ICMP, NetFlow, and MQTT for end-to-end visibility.
Core Capabilities
Everything you need to run a distributed network
Zero-touch provisioning
Devices call home the moment they power on. Pre-stage templates and bring new sites online remotely — no field configuration, no truck rolls.
Fleet management
Manage thousands of routers, gateways, access points, and IoT devices from one dashboard — config backup, remote reboot, and bulk actions.
Configuration templates
Standardize SD-WAN, VPN, firewall, Wi-Fi, captive portal, VLAN, and QoS settings, then apply them consistently across the whole fleet.
Real-time monitoring
Track device and network health, WAN status, VPN tunnels, wireless performance, clients, and traffic — with threshold alerts and scheduled reports.
Firmware lifecycle
Plan, audit, and roll out firmware and patches centrally, with staged upgrades across the fleet — no per-device access required.
Analytics & open APIs
NetFlow analytics and events, plus open REST, Syslog, NetFlow, and hotspot APIs to integrate networking into your own systems.
Why It Matters
Why operators choose mfusion
Faster rollout
Pre-stage templates and bring new sites online without field configuration or truck rolls.
Lower operating effort
Monitor, patch, troubleshoot, and control the entire fleet remotely — no per-site visits.
Consistent policy
Apply SD-WAN, firewall, Wi-Fi, VLAN, QoS, and captive-portal policies uniformly across sites.
Better visibility
See device health, WAN links, VPN tunnels, users, traffic, and alerts — all from one place.
SD-WAN Operations
Operate your SD-WAN from one screen
- Live VPN topology and tunnel status across every site
- Multi-WAN health, failover state, and link quality
- QoS and traffic-steering policy, pushed by template
- Gateway and branch availability at a glance
Guest Wi-Fi Operations
Manage guest Wi-Fi across every venue
- Captive-portal and AAA status per site
- Per-user and per-group access policies
- Multi-site, multi-portal guest Wi-Fi visibility
- User sessions, vouchers, and usage analytics
Wireless Monitoring
See every access point and client in real time
- Live AP, SSID, and client counts, split across 2.4 GHz and 5 GHz
- SSID and client distribution by band, channel, and hardware mode
- Per-AP signal quality — noise floor, transmit power, data rate, and channel width
- Per-client RSSI and SNR to surface weak connections and roaming issues
Observability
See every flow, across every site
You can't manage what you can't see. mfusion exports NetFlow from every appliance to a built-in collector, turning raw traffic into per-application and per-user analytics — plus a SOC dashboard that flags scanning, brute-force, and data exfiltration, with no separate probes or SPAN taps.
- Real-time per-application and per-user traffic breakdowns
- Threat scoring with scanner, fan-out, brute-force, and exfil detection
- Spot bottlenecks, heavy talkers, and anomalies at a glance
- NetFlow export plus a built-in collector — no extra probes or hardware
Audit & Accountability
Know who changed what, and when
Every action taken through mfusion is recorded — admin logins, per-device configuration changes, and the exact commands executed. A complete change history with timestamps, usernames, and source IPs gives you the accountability audits and investigations demand.
- Admin audit trails — logins, OTP validation, and system events with timestamp, username, and source IP
- Operation logs — every device configuration change, who made it, and whether it succeeded
- Change logs — full command history and step-by-step configuration detail
- Ready evidence for compliance, accountability, and troubleshooting
Security & Compliance
Secure by design
Secure by default
Devices open an outbound-only TLS session to mfusion — no inbound ports are exposed. Remote access features remain disabled unless explicitly enabled by policy.
RBAC & multi-tenancy
Granular role-based access with strict tenant isolation — service providers give each customer controlled visibility without exposing others’ data.
Encrypted device API
Secure device communication over TLS, with each device’s identity bound to its serial number, embedded certificates, and hardware identifiers.
MFA & single sign-on
Email- and SMS-based OTP for admin logins, plus SAML and LDAP integration for enterprise single sign-on and directory-backed MFA — layered on role-based access, with every login recorded in the audit trail.
Backed by RansNet’s ISO/IEC 27001-certified information security management system.
Deployment
Cloud-hosted or fully on-premises
Cloud-hosted
Multi-tenant SaaS on scalable, high-availability infrastructure — isolated per customer, with nothing to install.
On-premises
A dedicated hardware or virtual deployment for customers who require private infrastructure, full data control, and compliance.
See mfusion in action
Tell us about your device fleet, sites, WAN links, and operating model, and we'll show how mfusion helps you provision, monitor, and manage it all from one console.
Request a Demo