JUNE 18, 20268 min readCloud & Infrastructure

Cloud & Infrastructure Migration: Securely Connecting Branches

For multi-branch companies, cloud migration centralizes servers, mail and identity and connects branches securely with site-to-site VPN. Explained through ONYX's MobilGroup project.

As a company grows, branches often become its weakest point: each runs its own systems, its own mail, its own (or no) backup; central management gets hard and security gaps appear. Cloud and infrastructure migration fixes this — it centralizes servers, mail and identity and connects branches securely on one network. This article explains the process in plain language, through a real ONYX project.

The Typical Problems of Multi-Branch IT

In a traditional setup, each branch gradually accumulates its own "little IT": separate mail or free accounts, local files with no central backup, no secure link between branches, and no unified user management. The result: data moves between branches unprotected, and central oversight becomes almost impossible.

What Migration Actually Means

Cloud migration moves servers, mail, files and user identity (Active Directory) to a central or hybrid platform — for example Microsoft 365 / Azure. It does not mean throwing everything into the cloud; often a hybrid model is chosen, where some systems stay on-premises and others move.

Mail (Exchange → Microsoft 365)

All branches on one mail platform; automatic backup, spam and malware protection, mobile access — without the burden of a local mail server.

Files (Local Server → Cloud/Hybrid)

Central file storage, version history and access from any branch — reducing dependence on a local server that can fail.

Identity (AD → Azure AD / Entra)

A single account per employee, central management and multi-factor authentication (MFA) — protection against account takeover.

Connecting Branches Securely

Migration alone is not enough — you also need secure networking between branches. An edge firewall at each branch (Onyx Firewall, Fortinet or other) monitors traffic, while site-to-site VPN links the branches through encrypted tunnels. A resource in one branch becomes reachable from another as if on the local network — without being exposed to the internet.

Real Project: MobilGroup

ONYX built complete infrastructure for MobilGroup at the scale of 120 users across 5 branches:

  • an Active Directory domain — central user identity;
  • a mail system — unified across all branches;
  • a server room and server — central data;
  • network and site-to-site VPN — an encrypted network connecting the 5 branches.

The result: branches are managed centrally, every employee signs in with a company account, and data is backed up centrally.

Migration Is Not an Overnight Job

A proper migration is phased: first audit and plan (how many users, how many branches, which system moves first), then build the cloud environment, migrate the data (while old systems keep running — "in parallel"), test and train, and finally cut over and support. Done this way, work never stops.

Plan Your Migration with ONYX

Whether it's two branches or twenty, ONYX audits your current setup, designs a secure architecture and manages the migration end to end. See our services or contact us.

Tags

Cloud migrationInfrastructureMicrosoft 365Site-to-site VPNMulti-branchActive Directory

Need professional advice on your IT solutions?

Since 2019, with 100+ supply & delivery projects, let us be your trusted partner in your business's digital transformation.

More Articles