Every login to your network and servers waits for a manager's approval.
AdeGate puts remote connections to your Windows and Linux servers (RDP and SSH) and FortiGate VPN logins behind your manager's real-time approval. Even an account with a stolen password cannot get in until someone says yes.
It also monitors your FortiGate firewall, adds two-factor authentication with Google or Microsoft Authenticator to VPN and admin logins, and keeps the evidence ready for ISO 27001 audits. Everything runs on your own server.
The free plan never expires. Installation is a single command.
Attackers no longer break the door. They walk in with a stolen key.
Passwords leak.A phishing email, a reused password or a former employee. The attacker connects to your VPN and servers like a legitimate user, and no alarm goes off.
Your firewall sees everything but tells you nothing.Suspicious VPN logins and configuration changes get lost in the logs. By the time someone notices, the damage is done.
When the auditor arrives, the evidence is missing.Who logged in to which server, and who approved it? Pulling that answer together takes weeks.
AdeGate closes all three gaps: it adds a human approval to every login, watches your firewall for you and keeps a record of everything that happens.
The right person is asked at the moment of login.
When someone connects to a server or the VPN, AdeGate emails their manager an approval request. The manager approves or rejects with one click. The session does not open until approval arrives; rejected connections are closed and logged.
- Remote Desktop (RDP) on Windows servers, SSH on Linux: Ubuntu, Debian, RHEL, Rocky, Alma
- FortiGate SSL VPN: manager approval after the authenticator code
- The same approval step for FortiGate admin panel logins
- You decide how long an approval lasts; when it expires, the manager is asked again
- No RD Gateway, jump server or firewall rule required
- Installed on servers with a single line copied from the panel
- Who logged in, when, and on whose approval: all on record
What your firewall sees, made easy to understand.
AdeGate connects to your FortiGate, brings what is happening into one clean panel and tells you when something matters. Suspicious VPN logins, brute-force attempts, after-hours connections, configuration changes and performance problems no longer slip by.
- Two-factor authentication for SSL VPN users with Google or Microsoft Authenticator, no extra FortiToken licenses
- Separate two-factor authentication for FortiGate admin panel and SSH logins
- Manager approval after the code, for both VPN and admin logins
- Daily configuration backups, change history and a security score
On the firewall side, only FortiGate is supported for now.
When the audit comes, the evidence is already there.
AdeGate keeps the records the technical side of ISO 27001 Annex A asks for on its own: access reviews, log retention with a tamper-evident chain, incident management, backup verification, cryptography checks and external vulnerability scanning.
- Log retention from 30 to 365 days, depending on plan
- Weekly PDF reports and exportable audit records
- Logs forwarded to your central log server over syslog
AdeGate does not certify you. It produces the technical evidence you present to the auditor; policies and processes remain your organization's.
Up and running in three steps.
Installed on your own server, without touching your existing infrastructure.
Install
Run a single command on a server running Ubuntu 24.04; a virtual machine works too. The installer prepares everything it needs.
Connect
Run the one line copied from the panel on the servers you want to protect. If you have a FortiGate, add it with an API key.
Approve
Logins now go to your manager first. You hear about important events in the panel and by email, and on Pro by phone call.
No FortiGate?
Approval for logins to Windows and Linux servers works independently of the firewall. You can use AdeGate just to protect RDP and SSH logins.
What is included
- Approved RDP access
- Every Remote Desktop login to Windows servers needs approval.
- Approved SSH access
- The same flow and the same records for Linux servers.
- VPN: two-factor and manager approval
- Google or Microsoft Authenticator code on FortiGate SSL VPN logins, then manager approval.
- FortiGate admin logins
- Two-factor authentication and manager approval for admin panel and SSH logins.
- Real-time alerts
- By email, and by phone call on Pro and Enterprise.
- Change tracking
- Who changed what on the firewall, and when.
- Automatic backups
- Daily configuration backups with integrity checks.
- Security score
- Your FortiGate configuration checked against best practices.
- Access reviewsPro
- A periodic report of who has which access, with a sign-off record.
- Compliance reportPro
- A summary of technical evidence mapped to ISO 27001 Annex A.
- External vulnerability scanningEnterprise
- Weekly scans of your internet-facing web assets.
- High availabilityEnterprise
- A hot standby on a second server, taken over with one click.
Why AdeGate?
Your data stays with you
AdeGate runs on your own server. Your logs and passwords never leave your company.
No changes to your infrastructure
No proxy, jump server or network changes. It sits on top of what you already have.
Nobody gets locked out
Even if you exceed your license limit, logins are never blocked; new servers simply switch to log-only mode.
Built by a security team
Developed by ADEA Sistem. When you have a question, a person answers.
Start free, upgrade as you grow.
Free
For trying it out and small teams.
- Monitoring and alerts
- Manager-approved access
- Security score
Pro
For growing IT teams and companies preparing for audits.
- Everything in Free
- Compliance and PDF reports
- Audit record export
- Access reviews
- Phone call alerts, syslog
Enterprise
For multiple sites and setups that cannot afford downtime.
- Everything in Pro
- High availability (HA)
- External vulnerability scanning
- Priority support
Need more servers or users? We extend the limits to fit your needs. Get in touch.
Frequently asked questions
Do I need a FortiGate?
No. Manager approval for RDP and SSH logins works independently of the firewall. VPN and admin panel approval, two-factor authentication and monitoring work with FortiGate.
Where is my data stored?
AdeGate runs on your server; your logs, passwords and configuration backups stay there. Only license validation, version and anonymous usage information such as the number of monitored devices is sent to us.
What happens if the manager does not approve?
The session does not open and the user waits. If the manager rejects, the connection is closed. Every request, approval and rejection is recorded with who made it and when.
If I exceed my license limit, are users locked out?
No. Logins are never blocked when you exceed the limit; new servers beyond it switch to log-only mode instead of approval.
What do I need to install it?
A server or virtual machine running Ubuntu 24.04 with internet access. Installation is a single command, and your license key is requested during setup.
Why does the free license require a company email?
We give one free license per company. A company email address helps us keep that fair and send security updates to the right person.
Can I get ISO 27001 certified with AdeGate?
AdeGate does not certify you; certification is an assessment that also covers your organization's policies and processes. AdeGate produces the records and reports you present to the auditor for the technical side of Annex A.
Take control of who gets into your network and servers, starting today.
Start with the free plan; installation takes a few minutes.