Network & Security — Service Terms
Version 1.0 — April 2026
These Service Terms are an integral part of the NeoCloud Master Agreement and define the specific terms for the Network & Security services.
1. Service Description
NeoCloud provides network infrastructure and security services including VPC, firewall, load balancing, and VPN capabilities.
Virtual Private Cloud (VPC)
Three tiers available:
- Basic — OpenStack security groups, Octavia Load Balancer
- Standard — Includes Fortinet Next-Generation Firewall (NGFW)
- Performance — Includes Fortinet NGFW (exact differences with Standard to be confirmed)
Firewall
- FortiGate-based managed firewall on Standard and Performance VPC tiers
- SSL/TLS inspection capability
- VPN gateway with MFA support (FortiToken, RADIUS)
Load Balancing
- L4: FortiGate VIPs (Standard/Performance) or Octavia LB (Basic)
- L7: F5 NGINX Ingress Controller with VirtualServer CRD
VPN
- Site-to-site VPN for office connectivity
- Multi-factor authentication via FortiToken and RADIUS
2. Pricing Dimensions
| Dimension | Unit | Description |
|---|---|---|
| VPC | Per VPC / month | Based on tier (Basic, Standard, Performance) |
| Firewall | Per instance / month | FortiGate Standard or Advanced Security |
| Public IP | Per IP / month | IPv4 addresses |
| VPN tunnel | Per tunnel / month | Site-to-site VPN connections |
Refer to the NeoCloud price list for current rates.
3. Customer Responsibilities
- Defining firewall rules and security policies in coordination with the Cloud Services team
- Managing VPN client configurations for end users
- Providing network requirements for VPC setup
4. Limitations
- Basic VPC does not include advanced firewall features
- Firewall rule changes require coordination with the Cloud Services team
- Managed DNS is not supported in the current infrastructure
- IPS, DDoS protection, WAF, SIEM logging, and ZTNA are not supported in the current infrastructure
5. Definitions
| Term | Definition |
|---|---|
| VPC | Virtual Private Cloud — an isolated network environment |
| NGFW | Next-Generation Firewall — advanced firewall with application-aware filtering |
| VIP | Virtual IP — a load-balanced IP address on the FortiGate |