enQase and Light Rider Announce Strategic Technology Partnership to Advance Quantum-Safe Communications and Infrastructure
Learn more
[ TECHNOLOGY INTEGRATION PARTNER ]

The Palo Alto Networks NGFW - enQase QKD Solution

enQase QMesh distributes quantum-derived symmetric key material to Palo Alto Networks Next-Generation Firewalls (NGFW) over the ETSI GS QKD 014 interface. Your existing security architecture stays as it is. What changes is that a physics-based layer of key protection sits underneath it, independent of traditional key exchange.

View partner integration details
[ HOW THE INTEGRATION WORKS ]

Your firewall requests a key.
Quantum physics supplies it.

[ 1 ] Network orchestration
enQase QMesh functions as network orchestrator to create large-scale Quantum Key Distribution networks, spanning metro area and wide area networks.
[ 2 ] Key distribution
QMesh securely generates and distributes quantum-derived symmetric key material to Palo Alto Networks firewalls using the ETSI GS QKD 014 interface.
[ 3 ] VPN establishment
Each firewall retrieves its assigned quantum-generated key material from the local QKD node, while key identifiers are exchanged between peers to establish shared encryption context.
[ 4 ] Architecture preserved
This approach preserves the existing Palo Alto Networks security architecture while adding a physics-based layer of cryptographic protection independent of traditional key exchange mechanisms.
[ WHAT EACH SIDE CONTRIBUTES ]
PALO ALTO NETWORKS
Next-Generation Firewall
A prevention-focused architecture that is straightforward to deploy and operate. Machine learning inspects all traffic, including applications, threats and content, and ties that traffic to the user regardless of location or device type.
ENQASE
QMesh QKD
An enterprise quantum networking platform for deploying and managing symmetric key distribution at scale. Keys are generated and distributed over a quantum channel, where any attempt to intercept the transmission introduces detectable changes to the quantum state. Eavesdropping is identified before the keys are used.
[ WHAT YOU GET ]

Five outcomes from one integration.

Quantum-generated keys on high-value links
Protect the communications that warrant it, without extending quantum key distribution across the whole estate at once.
No network redesign
Existing site-to-site IPsec VPNs are secured in place and the Palo Alto Networks security architecture is preserved.
Crypto-agility through open standards
Integration runs over ETSI and ITU interfaces rather than a proprietary coupling between two vendors.
Scale beyond a single pair of sites
Trusted-node and multi-hop deployments extend quantum-secure communications across many locations.
Readiness for emerging requirements
Positions critical infrastructure ahead of the post-quantum cybersecurity requirements now being drafted.
[ DEPLOYMENT MODELS ]

Built on ETSI and ITU standards.

Hub and spoke

Several sites keyed from a central receiver, for concentrated campus or data centre estates.

Trusted node

Reach extended past a single fibre span by relaying key material through a trusted intermediate node.

Multi-hop

Metro and wide area key distribution networks spanning many sites under one orchestrated fabric.


BUILT FOR
Critical infrastructure
Government
Financial services
Healthcare
[ SCOPE OF THE INTEGRATION ]

What has been tested, and how.

COMPONENT
NOTES
QMesh QKD, quantum channel
Integration testing completed and validated against Palo Alto Networks Next-Generation Firewalls.
Site-to-site IPsec VPN
Each firewall retrieves its assigned key material from the local QKD node. Key identifiers are exchanged between peers to establish shared encryption context.
ETSI GS QKD 014 interface
Standards-based key delivery. No proprietary coupling between the two platforms.
[ NEXT STEP ]

Combine industry-leading network security with standards-based Quantum Key Distribution.

Bring your topology, your firewall estate and your fibre. We will map what a validated deployment looks like against it.
Oops! Something went wrong while submitting the form.
Quantum threats evolve daily.
We'll keep you ahead of the curve.
Enter your business email below to receive updates from enQase. You can unsubscribe at any time.

info@enQase.com

115 Wild Basin Rd, Suite 307, Austin, TX 78746​

430 Park Avenue, New York, NY 10022

33 W San Carlos St, San Jose, CA 95110