

Halo Dōgen
Security That Fits Into Your Network
Zero disruption. Full protection. No invasion of privacy.
Halo Dōgen is a drop-in security layer that strengthens your network instantly — without changing your IPs, VLANs, routing, or existing firewalls. It delivers intelligent threat filtering, behavioural analytics, and real-time visibility while staying fully POPIA-aligned.
Who Was Dōgen?
Halo Dōgen takes its name from Zen Master Eihei Dōgen, the 13th-century teacher who championed clarity, discipline, and removing unnecessary complexity. His philosophy was simple: focus on what matters, eliminate what doesn’t.
This is the same principle behind our Dōgen security layer — clear, ethical, non-intrusive protection that strengthens your network without redesign or disruption.
Where Dōgen Fits In
Halo Dōgen is deployed inline in front of your firewall, enhancing security and visibility instantly — without redesigning your network, changing your IP structure, modifying existing configurations, or causing any performance degradation.
Your network → Dōgen → Your firewall → Internet. (In front of your firewall, inline, bridge mode)
No IP changes. No VLAN rework. No downtime.
Why Customers Need It
✔ Firewalls alone are no longer enough
Modern threats hide in encrypted and cloud-based traffic. Firewalls cannot classify this on their own.
Dōgen fills the gap with behaviour- and metadata-based intelligence.
✔ BYOD makes traditional security impossible
You cannot control or install agents on personal devices — nor should you under POPIA.
Dōgen protects without touching user devices.
✔ Real-world networks are messy
Businesses inherit mixed switch brands, DIY Wi-Fi, inconsistent VLANs, and legacy routers.
Dōgen works instantly on top of whatever is already there.
✔ SSL decryption is becoming legally risky and technically fragile
POPIA, certificate pinning, encrypted DNS, and ECH make MITM inspection unreliable and intrusive.
Dōgen avoids decryption entirely — privacy is preserved.
✔ Organisations need visibility without violating privacy
Boards, compliance teams, and IT managers need insight — without spying on content.
Dōgen uses advanced machine-learning models and AI-based metadata classifiers to identify risky behaviour, anomalous connections, and emerging threats — all without decrypting traffic or inspecting payloads.
Powered by Zenarmor Inside


Dōgen is built on Zenarmor TLS-Light, a privacy-aligned inspection engine that analyses encrypted traffic without decrypting it.
It provides intelligent classification, behaviour awareness, and real-time threat insight — all without touching payloads or breaking encryption.
Dōgen includes:
-
A dedicated inline hardware appliance, purpose-built for transparent bridging, high throughput, and zero performance impact.
-
Threat and risk classification (metadata-driven)
-
Category-based content control
-
Application & service identification (L7 visibility without decryption)
-
Zero-trust DNS / URL classification
-
6th-generation ML and AI behavioural analysis
-
Cloud-assisted intelligence with local enforcement
And intentionally excludes:
-
Payload inspection
-
SSL/TLS decryption
-
MITM proxying
-
Certificate pinning bypasses
-
Endpoint agents
-
Device posturing
This keeps Dōgen POPIA-aligned, BYOD-friendly, and fully respectful of Digital Dignity.

The 5th Mountain Advantage
Ethical, non-intrusive security engineered for real-world South African networks.
Blameless Security. Digital Dignity. Reliable Protection.
