惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
H
Hacker News: Front Page
P
Palo Alto Networks Blog
T
ThreatConnect
Apple Machine Learning Research
Apple Machine Learning Research
博客园_首页
T
True Tiger Recordings
P
Privacy & Cybersecurity Law Blog
B
Blog
IT之家
IT之家
Last Week in AI
Last Week in AI
F
Full Disclosure
Hacker News: Ask HN
Hacker News: Ask HN
C
Comments on: Blog
Microsoft Azure Blog
Microsoft Azure Blog
C
Cybersecurity and Infrastructure Security Agency CISA
Microsoft Security Blog
Microsoft Security Blog
博客园 - 【当耐特】
N
News and Events Feed by Topic
NISL@THU
NISL@THU
腾讯CDC
雷峰网
雷峰网
Security Latest
Security Latest
李成银的技术随笔
M
Microsoft Research Blog - Microsoft Research
L
LangChain Blog
L
Lohrmann on Cybersecurity
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
C
Check Point Blog
Y
Y Combinator Blog
Recent Announcements
Recent Announcements
博客园 - Franky
N
News | PayPal Newsroom
V
V2EX
A
About on SuperTechFans
The Register - Security
The Register - Security
月光博客
月光博客
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Google Online Security Blog
Google Online Security Blog
MyScale Blog
MyScale Blog
Cisco Talos Blog
Cisco Talos Blog
Vercel News
Vercel News
WordPress大学
WordPress大学
C
Cyber Attacks, Cyber Crime and Cyber Security
The Hacker News
The Hacker News
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
爱范儿
爱范儿
A
Arctic Wolf
L
LINUX DO - 最新话题
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More

Megaport Blog

Early Warning Signs Your Network Needs a Refresh Introducing Megaport DDoS Protection A Guide to 400G Connectivity A Guide to NAT Gateway A Guide to Cloud Storage How the Data Center Is Evolving in 2026 What to Expect When Attending Your First Network Operator Group (NOG) Nine Ways to Connect to Cloud Using Private Connectivity Migrate Your On-premises to the Cloud: A Step-by-Step Guide How to Lower Your Egress Fees in 2026 How to Achieve Data Sovereignty in Europe Redefining the Edge with Cisco and Megaport How to Reduce Latency in Your Multicloud Environment Introducing Megaport High-Speed Cross-Cloud Encryption Are Businesses Leaving the Cloud? Using Meraki and Megaport Virtual Edge for Multicloud Networking Equinix Metal® is Going Away: Here’s What You Can Do Introducing Megaport On-ramp as a Service Megaport’s Full Solution Portfolio Is Coming to India New Bare-metal GPU Instance Now Available with NVIDIA RTX Pro 6000 A Look Back at 2025: Megaport's Biggest Updates Megaport Expands Into India With Extreme IX Your 2026 Predictions From AWS re:Invent 2025 Top NaaS Trends for 2026 What is IPsec? When to Move From Public Internet to Private Connectivity Megaport and Latitude.sh: Bringing Compute and Connectivity Together Improve Your Microsoft ExpressRoute Resilience with Megaport Comparing Ways to Connect to AWS What is API-First Networking? The Hidden Cost of Running Cloud-Hosted SD-WAN for IaaS Overcoming NaaS Integration Challenges Introducing SCION with Anapaya and Megaport How to Use Network as a Service to Future-Proof Your Network Introducing 400G Ports All the As-a-services, Compared Introducing Megaport IPsec Tunnels High Score: Megaport Hits 1,000 Locations A Guide to Colocation Data Centers Maximizing Peering Through Flow Analysis Build Resilient Networks for AI Production Workloads Introducing Packet Filtering on Megaport Cloud Router Building Resilient Government IT: Strategies for Secure, Compliant, and Scalable Connectivity Future-Proofing Government IT Telstra Programmable Network Is Being Discontinued. Here’s How to Migrate The Future of WAN Design Depends on Network as a Service (NaaS) Cisco Webex Edge Connect Launches on Megaport Voice and Video Exchange How to Prepare for APRA CPS 230 Comparing the SD-WAN Licensing Needs of Major Vendors A Guide to Improving Network Performance How Latitude.sh, Wasabi, and Megaport Unlock Cost-Effective Multicloud Four Ways to Connect Your Clouds SD-WAN and MPLS: Weighing the Similarities, Differences, and Benefits A Guide to Network as a Service (NaaS) How to Arrange Bilateral Peering Sessions Comparing Major SD-WAN Vendors Software Defined Networking in Healthcare Deploying A Global Network in Minutes With Megaport AWS Direct Connect Gateway (DGW) Data Transfer Outbound Rules Bilateral and Multilateral Peering: What’s the Difference? Multi-Region SD-WAN: Why Megaport SDCI is the Right Choice Microsoft Azure is Going Secure by Default. Are You Ready? How Megaport and Vultr Are Solving the Enterprise AI Challenge Introducing Megaport NAT Gateway A Guide to AWS Security Tools How to Deploy Amazon Bedrock Using AWS Direct Connect and Megaport Azure Private Link, Explained Introducing 100G MCRs Simplifying Hybrid and Multicloud Network Connectivity How to Fix Poor AWS Latency A Look Back at 2024: Megaport’s Biggest Updates Your 2025 Predictions From AWS re:Invent 2024 Six Ways to Get a More Resilient Network in 2025 Multicloud Security: Challenges and Solutions The Real Cost of High Network Latency Why Brazil is Your Key to Unlocking Business Growth in Latin America Why You Need Integrated Network Security Six Key Differences Between Major Cloud Providers How to Automate Your Megaport Infrastructure With APIs Why Italy is Europe’s Next Cloud Expansion Hotspot How to Lower Your Cloud Costs Peering: How Local Is Local? Introducing Megaport AI Exchange Two Scenarios for Hybrid Multicloud Deployment With IBM Cloud and Microsoft Azure How to Connect Equinix and Digital Realty Megaport Enables Microsoft Azure ExpressRoute Metro for More Resilient Network Connectivity Executives, Here’s What Your Network Team Wants You to Know Easy Ways to Interconnect Your Network The Role of the Data Center in Your Network 100G VXC Expansion: Now Available From 597 Data Centers Worldwide Top 10 How-To Guides To Improve Your Network Comparing Encryption in Transit Options Comparing Generative AI Offerings From Major Cloud Providers A Sustainable Business Strategy Starts With Your Network Solutions to Common API Issues With Megaport Transforming Financial Connectivity: Introducing Megaport Financial Services Exchange (FSX) Megaport Enhancing Connectivity in Adelaide Megaport’s Latest Portal Features and Functionalities Automate Your Network Deployments With The New Megaport Terraform Provider A Recap of the Megaport World Tour 2024
Should You Adopt a Zero Trust Network Architecture?
2022-03-01 · via Megaport Blog

From what it is to how it works, we look at Zero Trust Network Access and whether it’s time for your enterprise to adopt a zero trust architecture.

As organizations move toward processes and models that support a remote workforce, security should be top of mind. Enter the “zero trust” approach – treating every user as a potential threat until securely proven otherwise. Zero Trust Network Access (ZTNA) is the functionality at the core of this trend.

According to Gartner®, “by the end of 2024, 10 percent of enterprises will replace Network Access Control (NAC) and/or embedded switching security features with ZTNA on corporate-owned campus LANs – up from near zero percent in 2021”.1

Zero trust has quickly become a major talking point in the cloud industry. If you need to get up to speed with ZTNA, here’s how it works – and whether you should consider adopting a zero trust architecture.

What is ZTNA?

Zero Trust Network Access is a product or service that creates an identity- and context-based, logical access boundary around an enterprise’s applications. Put simply, it’s a network setup that treats all endpoints as hostile. This setup protects applications from being discovered and restricts access to a limited set of permitted entities – usually remote employees of an organization.

A trust broker controls these restrictions and verifies the identity, context, and policy adherence of each entity before access is granted. Additionally, these entities are prohibited from moving out of the permitted application to elsewhere in the network during that session, to minimize network exposure to cyber threats.

To achieve ZTNA, an enterprise network team orchestrates their enterprise network without embedded security functionalities such as filtering, profiling, and end-to-end segmentation found in most network switching or management feature sets. Instead, these features are replaced by cloud services that send application authentication and authorization requests to public cloud Points of Presence (PoPs). In short, security management processes are moved to the cloud. Local gateways will be at work to mitigate potential decreases in app availability, bandwidth, and performance that can result from the increased load a ZTNA can place on a network.

Taking a ZTNA approach to your network contributes to what is known as an adaptive trust model, simply meaning trust is granted on a case-by-case basis rather than conditionally assigned. This approach significantly reduces the chance of cyberattacks, especially for workplaces with hybrid or remote working models.

Should you adopt ZTNA?

With cyberattack techniques constantly advancing, bolstering cybersecurity is always a good idea. In particular, if your company has or is moving toward a hybrid workforce, you should consider a zero trust strategy to reduce the risk of malware propagating across your network.

When compared with other Network Access Control (NAC) solutions, segmenting your user-to-application security processes comes with the promise of simpler, stronger security, and the bonus benefit of reduced costs when compared with many other NAC solutions.

ZTNA can also be easier and more affordable to deploy than many existing security solutions due to its virtual nature – plus, it provides a consistent connection experience regardless of where, or which network, you connect from.

But something important to keep in mind, should your organization consider ZTNA, is that adopting an adaptive trust business model will require a shift in how you view your enterprise network; it can take time to introduce processes company-wide which treat all network entrants as hostile until explicitly proven otherwise.

How can you get started with ZTNA?

Gartner recommends to “enable flexibility to address changing needs, and a dynamic vendor landscape, by making shorter-term one- to three-year investments for ZTNA as well as SASE and other cloud networking offerings”.1

To get started with ZTNA, the best place to start is by replacing any traditional VPNs your enterprise uses, followed by looking at how you could extend your network fabric to your entire campus or corporate LAN.

While ZTNA is offered by a variety of vendors, there is no one size fits all solution.

When choosing a vendor, look for one that offers paths to remote and on-premises controls for your extended workforce, from employees to contractors and suppliers. During the evaluation process, it’s also important to collaborate with endpoint administrators to move internal IT management systems to the cloud.

Optimize your ZTNA investment by favoring lightweight, “cloud aware” products with robust and well-documented APIs, which are offered via consumption-based pricing rather than contracts. In 2022, having this agility is more important than investing in long-lasting physical infrastructure.

Learn more about how to keep your network safe in 2022.

ZTNA and Megaport

To offset the potential latency that can be experienced with local application access, adopters of ZTNA should look to leverage a low latency, scalable, and on-demand private connectivity platform. Deploying a Software Defined Network (SDN) to underpin the orchestration of your zero trust network will give you far better efficiency and control over your ZTNA, as well as the flexibility and scalability you’ll need for long-term success.

By underpinning your cloud network with Megaport’s private SDN, you can provision and manage your connections in the Megaport portal – simply point, click, and connect. Our scalable network gives you the agility to revise and grow your zero trust network on demand.

You can also save time and effort by automating the provisioning and management of your network connections with Megaport APIs. And with ISO/IEC27001 security certification, Megaport can be trusted to follow internationally recognized standards for information security and management.

Conclusion

In short, ZTNA shouldn’t be overlooked when it comes to protecting your network. Adopt it soon to be on the forefront – but be sure to adequately prepare your enterprise before making the shift to ensure your zero trust network is agile, scalable, and sustainable.

Ready to adopt ZTNA for your enterprise? Download the Gartner Predicts Report for the ultimate how-to guide.

1 Gartner®, Predicts 2022: Connecting the Digital Enterprise, By Andrew Lerner, John Watts, Joe Skorupa, 2 December 2021.

GARTNER is a registered trademark and service mark of Gartner, Inc. and/or its affiliates in the U.S. and internationally, and is used herein with permission. All rights reserved.