Secure networks, with zero trust built in

A single stack for networking, security, monitoring, and support.

Get a demo

Meter builds security into the network itself

Full-stack visibility, segmentation, identity-based access control, intrusion detection, and automated enforcement — built into the Network Operating System, hardware, and control plane.

Every rule enforced at the edge in seconds

Every change is validated before deployment

Meter F1 Firewall

Visibility that reflects the network

A centralized view of the network across all users, devices, and sites, without switching between logs, tools, and dashboards.

All Locations
WAN
352
hardware-sa icon
Firewalls
348
hardware-switch icon
Switches
1.4K
hardware-ap icon
APs
2.2K
hardware-pdu icon
PDUs
390
Clients
8.6K14.5K
2
Issues
2
1 Rogue access point detected
Rogue
Device link speed is 100 Mbps – review cabling
Switch
WAN
Download throughput
97 Mbps
Upload throughput
113 Mbps
Average uplink throughput
Download
Upload
12:00 AM4:00 AM8:00 AM
Now
Security
NIDS enabled
1/12
NIDS events
1310
Rogue APs
1
Honeypot SSIDs
0
Connectivity
Wireless clients
20
SSIDs
32
Wired clients
391
Ports in use
5117/12480
Clients
Wireless
Wired
12:00 AM4:00 AM8:00 AM
Now
Captive portals
Active
4
Pending approvals
8120351 total entries

Monitor policy changes and configuration drift in real time.

See device identity, posture, VLAN, and enforcement state in one view.

Export telemetry natively to any OpenTelemetry-compatible SIEM.

Get a demo

Zero trust is built into every layer

Every user is authenticated, every device is identified, and each segment is enforced.

802.1X

EAP-TLS, PEAP, FAST across wired and wireless networks

Device profiling

DHCP fingerprinting, MAC OUI lookup, and DNS behavior analysis

Integration with RADIUS providers

Authenticate by identity at every port and every SSID

Cloud / Backend
Virtualization Layer (Digital Twin)
Control Plane
DNS security
802.1X
DHCP + DNS
SD-WAN + WAN HA
IPSec
Site to Site
Client VPN
QoS
VLAN
Dynamic VLAN
Firewall
Automatic configuration
Captive portal
Rate limiting
Network Operating System
ControllerOS
SwitchOS
WirelessOS
PowerOS
ObserverOS

The network holds its desired state before, during, and after deployment

Digital twin

Every configuration change is validated against a real-time digital twin of the network before production.

Validation

Policy conflicts, unintended deny rules, performance impacts, and blast radius are simulated and flagged automatically.

1

Once deployed, network configurations are continuously compared to the desired state.

2

Every change is tracked with revision history, diffs, operator identity, & audit logs.

One-click rollback to any previous version.

Meter 42U network racks

Secure by default, zero hardware deprecation

Our unified firmware image, zero-touch provisioning, and lifecycle management ensure that your hardware is securely configured, eliminating interoperability risks from Day 0.

Devices authenticate to the Meter cloud control plane, receive their intended configuration automatically, and maintain connectivity.

Firmware upgrades follow staged HA health checks with clear rollback protection.

Detect and protect against intrusions

Meter continuously assesses risk signals across the network, including CVE/CPE vulnerability detection, anomaly detection by device type, DHCP/DNS/NTP flood detection, lateral movement detection, and rogue AP or spoofing detection.

Easily manage device and policy rules without needing advanced certifications.

Robust firewall and IDS/IPS capabilities are included by default, no additional fees or licenses required.

Meter F1 Firewall

Security features

Continuously monitor and assess risk from user identity, locations, to devices on the network. No hidden fees or upgrades required.

Firewall
Customizable firewall rules
Inline real-time prevention
IPS signatures
Custom allow and block lists
Snort & Suricata compatibility
Code injection protection
Malware detection
Unknown exploit protection
Unknown command & control protection
Unknown UDP protection
L3 Application blocking
L7 URL, application & category filtering (DNS security)
Safe search enforcement
Segmentation
Stateful firewall
CVE/CPE vulnerability detection
Anomaly detection by device type
DHCP/DNS/NTP flood detection
Lateral movement detection (East-west traffic)
Identity
MAC based authentication
802.1X (EAP-TLS, PEAP, FAST) across wired and wireless network
802.1X integrations with RADIUS providers
DHCP fingerprinting
MAC OUI lookup
DNS behavior analysis
Dynamic VLAN assignment
Switch Auto-Config
Port Security
Application analyticsComing soon
NAC (802.1X server)Coming soon
Wireless security
Rogue AP detection
Honeypot AP detection
Management frame protection (802.11w)
SSID client isolation
Auto rotate PSK per SSID
WPA2 enterprise and WPA3 enterprise
BSSID spoof detectionComing soon
SD-WAN
Policy-based routing
Application-based routingComing soon
Multi-WAN with failover
Multi-WAN with load-balancing (active-active)
WAN monitoring and probing
BGP over WAN with multi-homing
Dynamic WAN path selectionComing soon
VRRP based firewall HA (split-brain prevention)
PPPoEComing soon
Remote connectivity
AutoVPN (Site-to-site VPN)
IPSec
ClientVPN
WireGuard tunnels
BGP over IPSecComing soon
BGP over AutoVPNComing soon
Multi-hub with failover via BGPComing soon
Alerts and logging
Logging for all the above features
Client-based rate limiting
VLAN-based rate limiting
VLAN segmentation
DHCP pool exhaustion
Device online / offline
WAN quality and failover
STP convergence
Broadcast storm
DFS Radar detection

Integrations and extensibility

Maintain the applications your security team trusts. We integrate with best-in-class security solutions to meet your needs.

Integrations
Single sign-on (SSO)
Secure service edge
SIEM event export
Ticketing and ITSM
DHCP & DNS security event exportComing soon