Product

netADIT – access by role, not by wall port.

Our own NAC solution, in the field for 17 years. netADIT recognises every device and every user, grants rights by role and logs everything – wired and wireless alike.

A product that quiets down everyday IT

No technician at the wall port, no ticket for moving desks: whoever logs in gets their network – anywhere in the building.

Device and user recognition in real time
802.1X, MAC authentication and hotspot in one interface
Complete logging, GDPR-compliant, operated on your own premises
Product information as PDF

What netADIT takes care of

Roles instead of ports

Rights belong to the person and the device, not to the socket. A role change takes effect across the whole site instantly.

Guests in three clicks

Guest access through the captive portal of the hotspot gateways – in your own design, time-limited and separated from the internal network.

One view of everything

Who is on the network, with which device, in which role? Reportable, exportable, audit-proof.

Roles and rights

Every login ends in exactly one role. You define which roles exist – netADIT translates those definitions and assigns the corresponding VLAN on every login. Anyone who fits no role lands on the captive portal of a netADIT hotspot gateway.

Determined by the device
Device role

Every known device belongs to a group – managed in netADIT, manually or automatically via the REST API.

Company notebook, printer, POS terminal
Determined by the user
User role

The logged-in user comes from your directory service – Active Directory, openLDAP, eDirectory – or is defined by certificates. Their group determines the user role.

Employees, contractors, service technicians
When nothing fits together
Guest role

No known device, no known user, or a combination that is not permitted: dropped into the guest VLAN. From there the captive portal takes over – with a time frame, a time limit or permanent access.

Visitors, BYOD, unknown hardware
How that becomes a VLAN
Your rule set
Device role + User role Rule applies Effective VLAN
Assigned via RADIUS, vendor-independent

How a login runs

01

Recognise the device

Known company device or unknown hardware? That determines the device role.

02

Check the user

Login via 802.1X, verified by certificate or directory service – this determines the user role.

03

Apply the rules

Your rule set decides which of the two roles applies, or whether the login is dropped into the guest network.

04

Assign the role

The VLAN determined is assigned and the process is logged – in seconds, with no manual step.

The decision in detail

Five typical situations, step by step: which device, which user, which rule applies – and which role is assigned in the end. Pick a scenario or let it run.

+
···
live · access.log

Guest access and hotspot gateways

The hotspot gateways are the second area of netADIT. NAC runs without them, they run without NAC – together they interlock: anyone who fits no role ends up here. Distributed gateways at your sites, a centrally managed set of guests, and a portal that fits entirely into your corporate design.

Fixed period

Guest access for a defined span: start and end – for a seminar day, a trade-fair week or a contractor over two weeks.

Time budget

Guest access for a number of minutes that only starts counting with the first login.

Permanent

Guest access without an expiry date for returning guests and partners – revocable at any time.

Terms acceptance only

Access without credentials as soon as your terms of use have been accepted – for events and in-house fairs.

Built from modules

Each of these access types is a module of its own, as are mandatory terms acceptance, the access groups and the directory connection. The base system loads whatever is licensed – you only pay for the functions you actually need and can extend later without reinstalling.

All modules in the product information →

In day-to-day operation

Three things that matter in practice: that it stays traceable who was on the network; that your guests see your organisation and not our product; and that proven technology you already know is doing the work underneath.

Traceable

Every login, every change and every guest account created is recorded – with a timestamp and the user. For auditors, for troubleshooting and for your own overview.

Guest activity log with a detailed search
System log covering all changes in the back end
Can be evaluated and exported

Your appearance

From the captive portal to the printed credentials sheet, everything carries your corporate design. Guests never notice that a product of ours is running behind it.

Portal and login screen freely designable
Company logo and your own welcome text on the PDF credentials
Adaptable interface and quick links in the back end

Proven foundation

netADIT is a PHP application for Red Hat Enterprise Linux or AlmaLinux. It does not invent its own authentication but orchestrates proven open-source services – no black box, no vendor lock-in for your network.

Graduated rights in the back end: super user, administrator, operator
Vendor-independent via RADIUS
Connection to third-party systems via REST API

What users say

„Moving to netADIT with its precise access rules made it possible to grant these people, with their various permissions, secure and precisely defined access to our network.“

Franz Kern
Head of IT, St. Pölten University of Applied Sciences

„By using netADIT and its dedicated interface module to our in-house intranet, we can give visitors time-limited access that is still securely separated from our internal network.“

Ing. Alexander Kronsteiner
Infrastructure Client and Network Services, Federal Computing Centre

New in netADIT

Every version comes with release notes. The current one is at the top of the list.

All releases →
31 Mar 2026
V6.2.0
netADIT version 6.2.0 is here

This release focuses on stability and performance improvements as well as targeted functional extensions in network access control.

New and extended
Improved stability and performance in NAC operation
Targeted functional extensions in network access control
Security updates for the open-source components in use
24 Jan 2025
V6.1.0
Release of netADIT version 6.1.0

This version brings new features and improvements that offer more flexibility and stability in network access control.

New and extended
More flexibility in the NAC rule set
Stability improvements in day-to-day operation
1 Mar 2024
V6.0.0
netADIT enters its 6th generation

A small step in terms of looks, but a big leap for the technology: significant advances in performance and security.

New and extended
Updated interface
Technological modernisation of the base system
Improved performance and security

Downloads

Try netADIT in your own network

We set up a trial installation and work through the first rules together with you.

Request a trial