Zero Trust Network Access or ZTNA is an approach to access that does not put the user’s computer directly on the network. Unlike traditional VPN where the entire workstation becomes part of the network, ZTNA only allows the user to access the applications and services required to perform their job.
We can think of ZTNA like a large multi-tenant building where everyone who enters must pass the receptionist, announce themselves and say where they intend to go. The receptionist then checks their license (identification), checks the list of approved entrants, either employees or visitors, gives them a badge that only works for access to where they are authorized and only for a certain time frame.
When implemented correctly, ZTNA can do this no matter if the user is sitting at their desk or is remote and connecting from home, the airport, or anywhere. All traffic must go to the receptionist (a cloud solution), be identified, and approved for access only to the things it is allowed access to.
Benefits of ZTNA:
Challenges to adoption:
ZTNA is the future. You can start slowly with remote workers or remote location and as you replace legacy applications and networks evolve,continue with the long term goal of total ZTNA.