Downloads

The native Xensec
VPN client.

Your desktop client is the endpoint for device registration, local WireGuard key generation and VPN connections.

Windows

Xensec VPN for Windows

The native Windows client signs in against the Xensec client API, registers your device public key and requests live tunnel access from the control plane.

Native client APIWireGuard2FA awarePer-device keys
Client model

Private keys stay on your device.

Xensec does not generate or store the WireGuard private key used by the native client.

1

Sign in

Authenticate against your Xensec account and complete 2FA when required.

2

Register device

The client generates a local keypair and registers only the public key.

3

Connect

The control plane grants an eligible location and provisions the peer on the VPN node.