Central State-Owned Enterprises
GLINK SASE Helps Comprehensive Enterprise Group Achieve Security Without Worries
Aug.29.2025

With the in-depth advancement of digital transformation policies, a large-scale comprehensive enterprise group is gradually facing transformation challenges. Having developed for over 30 years, the group has transformed from the traditional field of residential development into a diversified business pattern focusing on construction engineering, living services, and advantageous businesses, with simultaneous development in hotel operations, commercial management, and high-quality education.


The enterprise has more than 300 branches and a total of over 12,000 employees. Currently, its business mainly covers the Pearl River Delta, eastern Guangdong, western Guangdong, and other regions, forming a strategic layout centered on the Pearl River Delta and radiating nationwide in an orderly manner. However, with the group's development, hidden dangers and problems in the integrated construction of network and security have emerged:


Pain Point Analysis: The Segregation of Network and Security Cannot Support the High-Speed Operation of Group Business


1. Chaotic Multi-Link Without Unified Planning: The group uses multi-operator lines, with each branch pulling lines independently, including both MPLS private lines and public internet lines. These lines lack unified intelligent scheduling, resulting in low bandwidth utilization. Core business scenarios such as employees accessing the headquarters' ERP system to create work orders or conducting online video conferences suffer from network freezes, affecting business experience. Additionally, real-time backup and upload of core data such as design drawings face certain packet loss and delay rates.



2. Fragmented Deployment of Security Defenses, Unable to Integrate Forces: The network security products, equipment, and services used by hundreds of branches nationwide are scattered, lacking coordinated and unified security monitoring and defense capabilities. There is also a lack of real-time security alarm and response services, making it impossible to instantly detect and quickly block potential malicious attacks and virus intrusions.



3. Independent Maintenance of Each Branch, Group O&M Under Heavy Burden: The network of each branch relies on local IT personnel for decentralized maintenance, failing to respond to faults in a timely manner, which increases the difficulty of network troubleshooting. The group headquarters struggles to achieve centralized, visualized, and efficient management of the entire network



Precise Breakthrough: GLINK SASE Builds a Secure Networking Solution for the Group to Achieve Network-Security Integration


Facing the above challenges, GLINK, based on the SASE architecture, tailored a network-security integration solution for the group to realize a "single network" architecture for large enterprises:


The core of the solution is to assist the customer in deploying a private network-security central control at the group headquarters and SASE integrated gateways at over 300 branches nationwide, achieving unified network-security management. The deployed SASE integrated gateways not only have the capability of SD-WAN central control networking but also possess the security capability of boundary protection.


The advantages of this solution lie in two aspects: on one hand, through intelligent link selection technology, it efficiently aggregates and optimizes lines between different operators, and deploys alternative backup links in combination with metropolitan area networks, ADSL, and 4G links, achieving redundant backup and cost optimization; on the other hand, the headquarters deploys a high-performance cloud firewall to build a core data security barrier, and provides a secure encrypted channel for mobile office and remote access through SSL VPN. Each branch realizes the sinking of security functions through lightweight CPE devices, achieving secure access nearby and enhancing boundary defense capabilities.


The security highlight of this solution is that through the deployment of a set of security combinations—headquarters cloud firewall + SASE integrated gateway + AI analysis and disposal capabilities + access to GLINK Century's NSOC (Network and Security Operations Center)—it can effectively detect attack behaviors, accurately identify various virus attacks and threat types such as host compromise, malicious files, and external attack sources, and perform defense interception and real-time blocking. The automated disposal rate exceeds 96%, enabling easy unified management, real-time monitoring, second-level alarming, and automated response of the entire network's devices, links, and security events.


Remarkable Results: The Group's Network Operates Smoothly, Truly Achieving Security Without Worries


After the deployment and launch of the project, the customer's network bandwidth utilization has been significantly improved, from the original 20% to 90%. The experience of core business scenarios has been enhanced: video conference freezes and delays have been resolved, and mass file transmission can be completed in seconds. In terms of security, through DNS detection and IPS/AV detection, various threats and virus attacks have been accurately intercepted. Statistics show that external attack sources have decreased from 215 per day originally to 17 within 7 days after the deployment of security services. The real-time perception capability has been comprehensively improved, and the security defense capability has achieved a milestone enhancement. The overall network-security O&M efficiency of the group has increased by up to 500%. The 7×24-hour unified O&M and AI automated disposal have significantly reduced the customer's labor and time costs, and the group's network efficiency and security system have been overall improved.


Future Outlook: Centering on Creating Value for Customers, Remembering the Mission of Network-Security Services



In the wave of the AI era, GLINK Century always puts customers at the center. Based on the successful case and practice of this network-security transformation, it will continue to deepen network-security products and services, empower more group customers to carry out digital network transformation, continuously improve product technology and service levels, and forge new vitality for enterprise networks.


  • Trust
    Huawei's preferred MSP
  • Major
    Many to one system
  • Hassel free
    Exclusive Engineer Services
  • Standardization
    One-stop implementation services
  • Intellectualization
    Intelligent robot operation and maintenance
  • Visualization
    7-by-24 hour monitoring center