home.social

#zerotrustnetworkaccess โ€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #zerotrustnetworkaccess, aggregated by home.social.

  1. @moses It's essentially a "network on top of a network." It's a virtual or logical network created on top of an existing physical network infrastructure. Imagine it like laying a transparent sheet over your existing network and defining new connections and rules on that sheet. This allows you to create separate, independent virtual networks, even though they share the same physical hardware. This adds flexibility, scalability, security, isolation, and resource optimization. My understanding is that's easier to implement #zerotrustnetworkaccess this way.

    I hope that's helpful!

  2. ๐— ๐—ถ๐—ฐ๐—ฟ๐—ผ๐˜€๐—ผ๐—ณ๐˜ ๐—˜๐—ป๐˜๐—ฟ๐—ฎ ๐—ฃ๐—ฟ๐—ถ๐˜ƒ๐—ฎ๐˜๐—ฒ ๐—”๐—ฐ๐—ฐ๐—ฒ๐˜€๐˜€: ๐—”๐—ป ๐—œ๐—ฑ๐—ฒ๐—ป๐˜๐—ถ๐˜๐˜†-๐—–๐—ฒ๐—ป๐˜๐—ฟ๐—ถ๐—ฐ ๐—ญ๐—ฒ๐—ฟ๐—ผ ๐—ง๐—ฟ๐˜‚๐˜€๐˜ ๐—ก๐—ฒ๐˜๐˜„๐—ผ๐—ฟ๐—ธ ๐—”๐—ฐ๐—ฐ๐—ฒ๐˜€๐˜€ ๐—ฆ๐—ผ๐—น๐˜‚๐˜๐—ถ๐—ผ๐—ป

    Private Access in Microsoft's SSE solution offers secure, controlled access to private resources using Zero Trust principles, expanded from the existing Entra ID Application Proxy. It supports a range of protocols, authentication methods, and anomaly detection, all benefiting from Microsoft's extensive global network.

    Find out more info:

    techcommunity.microsoft.com/t5

    Here's a summarized breakdown of the provided information:

    1๏ธโƒฃPrivate Access in Microsoft's SSE Solution:

    โœ”๏ธBuilt on Zero Trust principles.

    โœ”๏ธVerifies every user and enforces least privilege.

    โœ”๏ธGrants access only to needed private applications and resources.

    2๏ธโƒฃExpansion of Entra ID Application Proxy:

    โœ”๏ธPrivate Access extends capabilities of Entra ID Application Proxy in Microsoft Entra.

    โœ”๏ธEvolves into a comprehensive Zero Trust Network Access (ZTNA) solution.

    โœ”๏ธShares connectors but offers expanded functionalities.

    3๏ธโƒฃAccess to Any Private Resource:

    โœ”๏ธSimplifies and secures access to private resources on any port and protocol.

    โœ”๏ธPolicies enable secure, segmented, and granular access to corporate network apps.

    โœ”๏ธCovers on-premises, cloud-based applications, and more.

    4๏ธโƒฃGranular Access Controls and Anomaly Detection:

    โœ”๏ธConditional Access policies offer per-app, least privilege controls.

    โœ”๏ธContextual information about users, devices, and locations enhances policies.

    โœ”๏ธAnomalies or changes trigger session termination or stronger authentication.

    5๏ธโƒฃSecure Access Across Ports and Protocols:

    โœ”๏ธPrivate Access enables secure entry to applications, regardless of location.

    โœ”๏ธWorks with various protocols, including RDP, SSH, SMB, FTP, TCP, and UDP.

    6๏ธโƒฃDiverse Authentication Methods:

    โœ”๏ธSupports single sign-on (SSO) via SAML, http headers, or legacy Kerberos.

    โœ”๏ธNo need for application modifications.

    7๏ธโƒฃMicrosoft's Global Network Advantage:

    โœ”๏ธPrivate Access utilizes Microsoft's vast global network for delivery.

    โœ”๏ธEnhanced security and faster access compared to traditional VPNs.

    โœ”๏ธOptimized connection for hybrid and remote work scenarios.

    #microsoft #entra #sse #ZTNA #ZeroTrustNetworkAccess #ZeroTrust #sso #saml #mfa #conditionalaccess #azuread #securityserviceedge #vpn #azure #cloud #cloudsecurity