You didn't mention the modern solutions we offer (Access Server and CloudConnexa), but that's okay, your post is still right on point and makes a lot of sense.
Also: this guy's website absolutely slaps.
Stop forcing your field teams to use traditional VPNs. They hate them, and they mess with productivity.
When you have a distributed workforce across multiple states, standard VPN tunnels constantly drop, choke internet speeds, and create a single point of failure for network security.
The fix isn't a bigger server. It's moving to Zero Trust Network Access (ZTNA) using modern routing tools like Tailscale or WireGuard paired with Microsoft Intune.
Here is how I set this up to keep remote operations seamless:
Device Identity: Use Intune to enforce strict device compliance rules before a machine can even talk to the network.
Contextual Rules: Lock down data with Entra ID Conditional Access—if a login looks sketchy or happens on an unmanaged device, access is blocked instantly.
Micro-Segmentation: Use lightweight ZTNA mesh layers so field techs safely access exactly what they need (like local imaging nodes or server endpoints) without exposing the entire network.
The result? Zero manual login prompts for your users, tighter security boundaries, and no more "VPN dropped again" support tickets.