Celona SIM
The credential and identity layer built into Celona Orion — secure, policy-based network access across both private 5G and Wi-Fi for every device, managed entirely within Celona Orchestrator.
Celona offers physical and eSIMs in the Celona Orion subscription integrated with comprehensive SIM lifecycle management. These SIMs are the recommended identity type for use across private 5G and Wi-Fi networks.
For modern eSIM enabled commercial phones, this works with nothing installed while older devices can still be supported using the physical SIMs. And for every device class, the same SIM credential enforces the same enterprise policy — across both radios, in one place.
SIM management happens directly within Celona Orchestrator: physical SIMs and eSIMs, individual devices and bulk fleets, zero-touch MDM provisioning — all in a single interface, no separate platform to learn or maintain.
The identity foundation
Celona SIM cards carry the secure credentials for devices to authenticate to the Celona 5G LAN via Celona access points. On the Wi-Fi side, the same SIM credential — via Passpoint and EAP-AKA/SIM standards — enables automatic, secure authentication to Celona Wi-Fi APs. No password, no captive portal, no separate credential. One SIM, one identity, both radios.
Authentication is handled by the integrated database in the Celona Edge, so existing corporate policies are honored across Wi-Fi and 5G without external AAA.
Manage the device lifecycle in Orchestrator AI
SIM management is built into the Orchestrator SIMs & Devices console: activate, deactivate, reactivate, and reassign SIMs individually or in bulk. Real-time SIM and device states give fleet visibility, and device properties — name, static IP, profile, authorized sites, SIM lock — can be updated across many devices at once.
Single identity across Wi-Fi and private 5G
One SIM credential (SUPI) on both radios; the session follows the device with no re-auth, passwords, or portals.
No-app convergence on commercial phones
iPhone and Samsung get Wi-Fi + 5G convergence with zero apps, deployed as config profiles via Intune, Jamf, or Knox.
Unified, zero-touch management in Orchestrator
Provisioning, lifecycle, policy, and real-time fleet visibility in one place; auto-push eSIM/Passpoint via Jamf, AirWatch, Intune; manage physical SIM or eSIM in bulk and drill down by ICCID, IMSI, IP, site, or cluster.
Policy-based access via MicroSlicing
SIM identity maps to MicroSlicing policy across both radios; changes take effect immediately.
Enterprise-grade security by default
Authentication entirely within Celona Orion, AES encryption, IMEI/IMSI identification, SIM lock; no external AAA dependency.
The cross-radio data moat
The SUPI links Wi-Fi L2 and 5G RF signals at sub-second resolution, powering predictive AI that competitors with borrowed Wi-Fi cannot assemble.
Celona supports both form factors — the choice is how you provision identity
Physical SIM
Physical SIM cards provisioned into devices — well suited to ruggedized scanners, handhelds, and IoT gateways in warehouse, manufacturing, and field environments.
eSIM
Embedded identity with flexible onboarding: QR-code activation (per eSIM), bulk CSV import for many devices at once, and MDM integration (Jamf, AirWatch, Intune) for zero-touch provisioning with no user input.
Dual-SIM devices: a Celona eSIM profile can coexist with a public mobile identity, enabling private and public cellular connectivity simultaneously.
Installing an eSIM on a phone, start to finish
A short walkthrough of the Apple eSIM experience — adding a Celona eSIM to an iPhone and joining the private network, with nothing installed on the device.
Enterprise smartphones
Celona SIM plus a Passpoint MDM profile on iOS and Android. Phones join Celona Wi-Fi with no password; the SIM handles 5G. The session follows the user Wi-Fi to 5G on one identity. Zero apps, zero friction.
Routers and CPE
A Celona eSIM in a Wi-Fi + 5G router bonds both radios to the Celona core, which steers traffic. Machines and fixed assets see one stable connection. Certified CPE SKUs and Orchestrator templates make rollout turnkey.
Rugged handhelds and IoT
Physical SIMs in rugged scanners, handhelds, and IoT gateways. A light Celona client handles the Wi-Fi-to-5G move on Android; activate in bulk via MDM with per-group MicroSlicing policies.
Large-scale site rollouts
Bulk CSV and MDM onboard hundreds of devices per site — SIM for 5G, Passpoint for Wi-Fi — each mapped to the right MicroSlice at activation. Zero per-device steps.
Predictive cross-radio intelligence
Wi-Fi L2, 5G RF, and session state joined on the SUPI at sub-second cadence, so edge AI acts before the radio drops. Every handover self-labels as training data.
Talk to us
Tell us about your site and we’ll work through the right converged deployment with you.
Case studies
See what enterprises are running in production on Celona, and what it took to get there.
Price your deployment
Compare Celona against Wi-Fi and private cellular alternatives across five worked deployment scenarios.