Use cases

Operational problems URUFI is built to solve.

Each of these is a situation where access decisions and network policy normally live in separate systems that disagree.

Use cases

More than guest Wi-Fi.

Access can arrive through an access point, a wired port, or a VLAN. URUFI owns the decision and the policy behind it either way.

MSP and ISP fleets

Run many customer organizations and edge locations from one console with isolated data.

The problem

Growth normally means one more device to log into per customer. Policy drifts because it is edited per site, and nobody can answer what a given location is actually running. URUFI keeps each organization's data and permissions separate while the same policy objects are reused across the whole fleet.

Firewall as a managed service

Protect customer sites centrally without shipping another proprietary appliance to every location.

The problem

Managed security usually requires a vendor box at each site, with its own licence, lifecycle, and console. URUFI enforces ordered firewall policy with Linux nftables on the gateway that is already there, and reports whether each site accepted the current ruleset.

Segmented branch networks

Keep VLANs, DHCP, gateways, DNS, and MTU in one configuration your team can review.

The problem

Segmentation breaks when addressing lives on the switch, DHCP on a server, and the firewall somewhere else. URUFI holds a site's logical networks as a single reviewable revision, and the gateway refuses a change that would overlap a subnet, break an active lease, or use a VLAN the site is not permitted to carry.

Bandwidth tiers and plans

Give branches, subscribers, guests, or devices different speeds, enforced at the gateway.

The problem

Rate limits are usually maintained separately from the commercial record, so an expired customer keeps their speed and an upgraded one does not get it. URUFI attaches the service class to the entitlement, so changing the plan changes what the kernel enforces.

Managed device access

Issue each device its own certificate instead of sharing one network password.

The problem

A shared PSK cannot be revoked for one laptop, and rotating it disrupts everyone. URUFI issues per-device EAP-TLS credentials, authenticates them with built-in RADIUS, and revokes a single device without touching the rest of the site.

Paid, trial, and guest access

Add phone verification, trials, plans, and PINs when the network serves customers or guests.

The problem

Public access is often a portal bolted onto a network that knows nothing about it. In URUFI the captive decision, the plan, the expiry, and the firewall and bandwidth policy are the same record, so access starts and stops without manual cleanup.

Keep your existing switches, access points, and wireless controllers. URUFI adds a policy layer to the Linux gateway already carrying site traffic.

Operating models URUFI is built for

These are the deployment shapes the platform is designed around — multi-site, multi-tenant, and gateway-based.

Managed service providersISPs and integratorsDistributed businessesHospitality and venuesEnterprise ITPrivate infrastructure