{"id":479753,"date":"2023-08-09T10:44:16","date_gmt":"2023-08-09T10:44:16","guid":{"rendered":""},"modified":"2023-09-05T11:19:30","modified_gmt":"2023-09-05T11:19:30","slug":"zero-trust-2","status":"publish","type":"wiki","link":"https:\/\/oneproxy.pro\/cn\/wiki\/zero-trust-2\/","title":{"rendered":"\u96f6\u4fe1\u4efb"},"content":{"rendered":"<p>\u5728\u8fd9\u4e2a\u7f51\u7edc\u5a01\u80c1\u4e0d\u65ad\u6f14\u53d8\u3001\u5bf9\u6570\u5b57\u7cfb\u7edf\u4f9d\u8d56\u6027\u65e5\u76ca\u589e\u5f3a\u7684\u65f6\u4ee3\uff0c\u96f6\u4fe1\u4efb\u6982\u5ff5\u5df2\u6210\u4e3a\u7f51\u7edc\u5b89\u5168\u7684\u9769\u547d\u6027\u65b9\u6cd5\u3002\u96f6\u4fe1\u4efb\u6311\u6218\u4e86\u4f20\u7edf\u7684\u57fa\u4e8e\u8fb9\u754c\u7684\u5b89\u5168\u6a21\u578b\uff0c\u5b83\u5021\u5bfc\u4e00\u79cd\u66f4\u4e3b\u52a8\u3001\u66f4\u5168\u9762\u7684\u7b56\u7565\uff0c\u5373\u65e0\u8bba\u7528\u6237\u6216\u8bbe\u5907\u4f4d\u4e8e\u4f55\u5904\u6216\u5904\u4e8e\u4f55\u79cd\u7f51\u7edc\u73af\u5883\uff0c\u90fd\u65e0\u9700\u5bf9\u5176\u5efa\u7acb\u56fa\u6709\u4fe1\u4efb\u3002\u8fd9\u4e00\u7406\u5ff5\u4e3a\u7f51\u7edc\u5b89\u5168\u9886\u57df\u7684\u8303\u5f0f\u8f6c\u53d8\u94fa\u5e73\u4e86\u9053\u8def\uff0c\u5f3a\u8c03\u6301\u7eed\u76d1\u63a7\u3001\u4e25\u683c\u8eab\u4efd\u9a8c\u8bc1\u548c\u52a8\u6001\u8bbf\u95ee\u63a7\u5236\u3002<\/p>\n<h2>\u96f6\u4fe1\u4efb\u7684\u8d77\u6e90\u548c\u9996\u6b21\u63d0\u53ca<\/h2>\n<p>\u96f6\u4fe1\u4efb\u7684\u6982\u5ff5\u6700\u65e9\u51fa\u73b0\u5728\u8c37\u6b4c\u4e8e 2014 \u5e74\u53d1\u8868\u7684\u4e00\u7bc7\u5f00\u521b\u6027\u7814\u7a76\u8bba\u6587\u300aBeyondCorp\uff1a\u4f01\u4e1a\u5b89\u5168\u7684\u65b0\u65b9\u6cd5\u300b\u4e2d\u3002\u8be5\u8bba\u6587\u6982\u8ff0\u4e86\u4e00\u79cd\u65b0\u7684\u5b89\u5168\u6a21\u578b\uff0c\u8be5\u6a21\u578b\u6452\u5f03\u4e86\u4f20\u7edf\u7684\u57ce\u5821\u548c\u62a4\u57ce\u6cb3\u65b9\u6cd5\uff0c\u8f6c\u800c\u91c7\u7528\u4ee5\u7528\u6237\u4e3a\u4e2d\u5fc3\u3001\u60c5\u5883\u611f\u77e5\u7684\u65b9\u6cd5\u3002\u8c37\u6b4c\u5bf9\u8fd9\u79cd\u65b9\u6cd5\u7684\u5b9e\u65bd\uff0c\u5373 BeyondCorp \u8ba1\u5212\uff0c\u6807\u5fd7\u7740\u96f6\u4fe1\u4efb\u539f\u5219\u7684\u8bde\u751f\u3002\u5b83\u65e8\u5728\u6839\u636e\u7528\u6237\u8eab\u4efd\u3001\u8bbe\u5907\u5b89\u5168\u548c\u5176\u4ed6\u60c5\u5883\u56e0\u7d20\u6765\u4fdd\u62a4\u8d44\u6e90\uff0c\u800c\u4e0d\u662f\u4ec5\u4ec5\u4f9d\u9760\u7f51\u7edc\u8fb9\u754c\u3002<\/p>\n<h2>\u5173\u4e8e\u96f6\u4fe1\u4efb\u7684\u8be6\u7ec6\u4fe1\u606f\uff1a\u6269\u5c55\u4e3b\u9898<\/h2>\n<p>\u96f6\u4fe1\u4efb\u4e0d\u4ec5\u4ec5\u662f\u4e00\u79cd\u6280\u672f\u6216\u89e3\u51b3\u65b9\u6848\uff0c\u800c\u662f\u4e00\u4e2a\u6db5\u76d6\u5404\u79cd\u539f\u5219\u3001\u7b56\u7565\u548c\u6280\u672f\u7684\u7efc\u5408\u5b89\u5168\u6846\u67b6\u3002\u96f6\u4fe1\u4efb\u7684\u6838\u5fc3\u5305\u62ec\uff1a<\/p>\n<ol>\n<li><strong>\u5fae\u5206\u6bb5\uff1a<\/strong> \u5c06\u7f51\u7edc\u5212\u5206\u4e3a\u66f4\u5c0f\u7684\u3001\u72ec\u7acb\u7684\u90e8\u5206\uff0c\u4ee5\u904f\u5236\u6f5c\u5728\u7684\u6f0f\u6d1e\u5e76\u9650\u5236\u6a2a\u5411\u79fb\u52a8\u3002<\/li>\n<li><strong>\u6301\u7eed\u8eab\u4efd\u9a8c\u8bc1\uff1a<\/strong> \u8981\u6c42\u7528\u6237\u548c\u8bbe\u5907\u5728\u6bcf\u6b21\u8bbf\u95ee\u65f6\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\uff0c\u65e0\u8bba\u5176\u4f4d\u7f6e\u6216\u4e4b\u524d\u7684\u8eab\u4efd\u9a8c\u8bc1\u5982\u4f55\u3002<\/li>\n<li><strong>\u6700\u5c0f\u6743\u9650\u8bbf\u95ee\uff1a<\/strong> \u6388\u4e88\u7528\u6237\u6267\u884c\u4efb\u52a1\u6240\u9700\u7684\u6700\u4f4e\u8bbf\u95ee\u6743\u9650\uff0c\u51cf\u5c11\u8d26\u6237\u88ab\u76d7\u7684\u6f5c\u5728\u5f71\u54cd\u3002<\/li>\n<li><strong>\u884c\u4e3a\u5206\u6790\uff1a<\/strong> \u76d1\u63a7\u7528\u6237\u548c\u8bbe\u5907\u884c\u4e3a\u4ee5\u68c0\u6d4b\u5f02\u5e38\u548c\u6f5c\u5728\u5a01\u80c1\uff0c\u4ece\u800c\u53ca\u65f6\u505a\u51fa\u54cd\u5e94\u3002<\/li>\n<li><strong>\u52a8\u6001\u8bbf\u95ee\u63a7\u5236\uff1a<\/strong> \u6839\u636e\u5bf9\u7528\u6237\u548c\u8bbe\u5907\u53ef\u4fe1\u5ea6\u7684\u5b9e\u65f6\u8bc4\u4f30\u6765\u8c03\u6574\u8bbf\u95ee\u6743\u9650\u3002<\/li>\n<\/ol>\n<h2>\u96f6\u4fe1\u4efb\u7684\u5185\u90e8\u7ed3\u6784\uff1a\u96f6\u4fe1\u4efb\u7684\u5de5\u4f5c\u539f\u7406<\/h2>\n<p>\u96f6\u4fe1\u4efb\u7684\u57fa\u672c\u539f\u5219\u662f\u201c\u6c38\u4e0d\u4fe1\u4efb\uff0c\u59cb\u7ec8\u9a8c\u8bc1\u201d\u3002\u8fd9\u79cd\u65b9\u6cd5\u5047\u8bbe\u5a01\u80c1\u53ef\u80fd\u6765\u81ea\u5916\u90e8\u548c\u5185\u90e8\uff0c\u4ece\u800c\u6311\u6218\u4e86\u4f20\u7edf\u7684\u5b89\u5168\u6a21\u578b\u3002\u96f6\u4fe1\u4efb\u5229\u7528\u6280\u672f\u3001\u534f\u8bae\u548c\u5b9e\u8df5\u7684\u7ec4\u5408\u6765\u786e\u4fdd\u5f3a\u5927\u7684\u5b89\u5168\u6027\uff1a<\/p>\n<ol>\n<li><strong>\u8eab\u4efd\u548c\u8bbf\u95ee\u7ba1\u7406 (IAM)\uff1a<\/strong> \u96c6\u4e2d\u63a7\u5236\u7528\u6237\u8eab\u4efd\u3001\u8eab\u4efd\u9a8c\u8bc1\u548c\u8bbf\u95ee\u6743\u9650\u3002<\/li>\n<li><strong>\u591a\u91cd\u8eab\u4efd\u9a8c\u8bc1 (MFA)\uff1a<\/strong> \u8981\u6c42\u91c7\u7528\u591a\u79cd\u5f62\u5f0f\u7684\u9a8c\u8bc1\u6765\u8fdb\u884c\u7528\u6237\u8eab\u4efd\u9a8c\u8bc1\u3002<\/li>\n<li><strong>\u52a0\u5bc6\uff1a<\/strong> \u4fdd\u62a4\u4f20\u8f93\u4e2d\u548c\u9759\u6b62\u7684\u6570\u636e\u4ee5\u9632\u6b62\u672a\u7ecf\u6388\u6743\u7684\u8bbf\u95ee\u3002<\/li>\n<li><strong>\u7f51\u7edc\u5206\u6bb5\uff1a<\/strong> \u9694\u79bb\u7f51\u7edc\u7684\u4e0d\u540c\u90e8\u5206\u4ee5\u904f\u5236\u8fdd\u89c4\u884c\u4e3a\u5e76\u9632\u6b62\u6a2a\u5411\u79fb\u52a8\u3002<\/li>\n<li><strong>\u6301\u7eed\u76d1\u63a7\u548c\u5206\u6790\uff1a<\/strong> \u5206\u6790\u7528\u6237\u884c\u4e3a\u548c\u7f51\u7edc\u6d41\u91cf\u4ee5\u5b9e\u65f6\u68c0\u6d4b\u5f02\u5e38\u548c\u6f5c\u5728\u5a01\u80c1\u3002<\/li>\n<\/ol>\n<h2>\u96f6\u4fe1\u4efb\u5173\u952e\u7279\u5f81\u5206\u6790<\/h2>\n<p>\u5b9a\u4e49\u96f6\u4fe1\u4efb\u7684\u4e3b\u8981\u7279\u5f81\u5305\u62ec\uff1a<\/p>\n<ol>\n<li><strong>\u53bb\u4e2d\u5fc3\u5316\u5b89\u5168\uff1a<\/strong> \u8131\u79bb\u96c6\u4e2d\u5f0f\u5b89\u5168\u8fb9\u754c\uff0c\u800c\u662f\u5728\u6574\u4e2a\u7f51\u7edc\u5185\u5206\u6563\u5b89\u5168\u63a7\u5236\u3002<\/li>\n<li><strong>\u4e0a\u4e0b\u6587\u8bbf\u95ee\u63a7\u5236\uff1a<\/strong> \u6839\u636e\u7528\u6237\u8eab\u4efd\u3001\u8bbe\u5907\u5065\u5eb7\u72b6\u51b5\u3001\u4f4d\u7f6e\u548c\u884c\u4e3a\u786e\u5b9a\u8bbf\u95ee\u6743\u9650\u3002<\/li>\n<li><strong>\u7ec6\u7c92\u5ea6\u6388\u6743\uff1a<\/strong> \u5e94\u7528\u7ec6\u7c92\u5ea6\u7684\u8bbf\u95ee\u7b56\u7565\u5c06\u7528\u6237\u6743\u9650\u9650\u5236\u4e3a\u5176\u4efb\u52a1\u6240\u9700\u7684\u6700\u4f4e\u9650\u5ea6\u3002<\/li>\n<li><strong>\u52a8\u6001\u98ce\u9669\u8bc4\u4f30\uff1a<\/strong> \u5b9e\u65f6\u8bc4\u4f30\u4e0e\u6bcf\u4e2a\u8bbf\u95ee\u8bf7\u6c42\u76f8\u5173\u7684\u98ce\u9669\u5e76\u76f8\u5e94\u5730\u8c03\u6574\u8bbf\u95ee\u63a7\u5236\u3002<\/li>\n<li><strong>\u6301\u7eed\u76d1\u63a7\uff1a<\/strong> \u6301\u7eed\u76d1\u63a7\u7528\u6237\u548c\u8bbe\u5907\u6d3b\u52a8\u4ee5\u8bc6\u522b\u504f\u79bb\u6b63\u5e38\u884c\u4e3a\u7684\u884c\u4e3a\u3002<\/li>\n<\/ol>\n<h2>\u96f6\u4fe1\u4efb\u7684\u7c7b\u578b<\/h2>\n<p>\u96f6\u4fe1\u4efb\u6839\u636e\u5176\u8303\u56f4\u548c\u5e94\u7528\u53ef\u4ee5\u5206\u4e3a\u4ee5\u4e0b\u51e0\u79cd\u7c7b\u578b\uff1a<\/p>\n<table>\n<thead>\n<tr>\n<th>\u7c7b\u578b<\/th>\n<th>\u63cf\u8ff0<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>\u7f51\u7edc\u96f6\u4fe1\u4efb<\/td>\n<td>\u4e13\u6ce8\u4e8e\u901a\u8fc7\u5206\u6bb5\u548c\u4e25\u683c\u7684\u8bbf\u95ee\u63a7\u5236\u6765\u4fdd\u62a4\u7f51\u7edc\u6d41\u91cf\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u6570\u636e\u96f6\u4fe1\u4efb<\/td>\n<td>\u5f3a\u8c03\u901a\u8fc7\u52a0\u5bc6\u6765\u4fdd\u62a4\u6570\u636e\u5e76\u6839\u636e\u7528\u6237\u548c\u4e0a\u4e0b\u6587\u63a7\u5236\u8bbf\u95ee\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u5e94\u7528\u7a0b\u5e8f\u96f6\u4fe1\u4efb<\/td>\n<td>\u4e13\u6ce8\u4e8e\u901a\u8fc7\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\u6765\u4fdd\u62a4\u5355\u4e2a\u5e94\u7528\u7a0b\u5e8f\u7684\u5b89\u5168\u3002<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>\u96f6\u4fe1\u4efb\u7684\u4f7f\u7528\u65b9\u6cd5\u3001\u95ee\u9898\u53ca\u5176\u89e3\u51b3\u65b9\u6848<\/h2>\n<p><strong>\u7528\u4f8b\uff1a<\/strong><\/p>\n<ol>\n<li><strong>\u8fdc\u7a0b\u52b3\u52a8\u529b\uff1a<\/strong> \u96f6\u4fe1\u4efb\u901a\u8fc7\u9a8c\u8bc1\u7528\u6237\u8eab\u4efd\u548c\u8bbe\u5907\u5b89\u5168\u5b9e\u73b0\u5b89\u5168\u7684\u8fdc\u7a0b\u8bbf\u95ee\u3002<\/li>\n<li><strong>\u7b2c\u4e09\u65b9\u8bbf\u95ee\uff1a<\/strong> \u786e\u4fdd\u5916\u90e8\u5408\u4f5c\u4f19\u4f34\u548c\u4f9b\u5e94\u5546\u53ea\u8bbf\u95ee\u5fc5\u8981\u7684\u8d44\u6e90\u3002<\/li>\n<li><strong>\u4e91\u5b89\u5168\uff1a<\/strong> \u901a\u8fc7\u5f3a\u5236\u8bbf\u95ee\u63a7\u5236\u4fdd\u62a4\u4e91\u73af\u5883\u4e2d\u7684\u6570\u636e\u548c\u5e94\u7528\u7a0b\u5e8f\u3002<\/li>\n<\/ol>\n<p><strong>\u6311\u6218\u548c\u89e3\u51b3\u65b9\u6848\uff1a<\/strong><\/p>\n<ol>\n<li><strong>\u590d\u6742\uff1a<\/strong> \u5b9e\u65bd\u96f6\u4fe1\u4efb\u9700\u8981\u4ed4\u7ec6\u89c4\u5212\u548c\u6574\u5408\u5404\u79cd\u6280\u672f\u3002<\/li>\n<li><strong>\u7528\u6237\u4f53\u9a8c\uff1a<\/strong> \u5728\u5b89\u5168\u6027\u548c\u53ef\u7528\u6027\u4e4b\u95f4\u53d6\u5f97\u5e73\u8861\u5bf9\u4e8e\u7528\u6237\u63a5\u53d7\u5ea6\u81f3\u5173\u91cd\u8981\u3002<\/li>\n<li><strong>\u9057\u7559\u7cfb\u7edf\uff1a<\/strong> \u5c06\u96f6\u4fe1\u4efb\u9002\u5e94\u4e8e\u9057\u7559\u57fa\u7840\u8bbe\u65bd\u53ef\u80fd\u9700\u8981\u9010\u6b65\u7684\u8fc1\u79fb\u548c\u66f4\u65b0\u3002<\/li>\n<\/ol>\n<h2>\u4e3b\u8981\u7279\u70b9\u53ca\u5176\u4ed6\u4e0e\u540c\u7c7b\u4ea7\u54c1\u7684\u6bd4\u8f83<\/h2>\n<table>\n<thead>\n<tr>\n<th>\u7279\u5f81<\/th>\n<th>\u96f6\u4fe1\u4efb<\/th>\n<th>\u4f20\u7edf\u5468\u8fb9\u5b89\u5168<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>\u4fe1\u4efb\u5047\u8bbe<\/td>\n<td>\u5bf9\u7528\u6237\u6216\u8bbe\u5907\u6ca1\u6709\u56fa\u6709\u7684\u4fe1\u4efb\u3002<\/td>\n<td>\u5047\u5b9a\u7f51\u7edc\u8fb9\u754c\u5185\u5b58\u5728\u4fe1\u4efb\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u8bbf\u95ee\u63a7\u5236<\/td>\n<td>\u6839\u636e\u7528\u6237\u8eab\u4efd\u3001\u8bbe\u5907\u5065\u5eb7\u548c\u73af\u5883\u3002<\/td>\n<td>\u901a\u5e38\u4f9d\u8d56\u4e8e\u7f51\u7edc\u4f4d\u7f6e\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u5a01\u80c1\u7f13\u89e3<\/td>\n<td>\u4e13\u6ce8\u4e8e\u65e9\u671f\u5a01\u80c1\u68c0\u6d4b\u548c\u904f\u5236\u3002<\/td>\n<td>\u4f9d\u8d56\u5916\u90e8\u9632\u706b\u5899\u548c\u5165\u4fb5\u68c0\u6d4b\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u53ef\u6269\u5c55\u6027<\/td>\n<td>\u9002\u5e94\u5404\u79cd\u7f51\u7edc\u67b6\u6784\u3002<\/td>\n<td>\u53ef\u80fd\u96be\u4ee5\u5bb9\u7eb3\u8fdc\u7a0b\u548c\u79fb\u52a8\u7528\u6237\u3002<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>\u4e0e\u96f6\u4fe1\u4efb\u76f8\u5173\u7684\u89c2\u70b9\u548c\u672a\u6765\u6280\u672f<\/h2>\n<p>\u96f6\u4fe1\u4efb\u7684\u672a\u6765\u5c06\u5e26\u6765\u4ee4\u4eba\u5174\u594b\u7684\u8fdb\u6b65\uff1a<\/p>\n<ol>\n<li><strong>\u4eba\u5de5\u667a\u80fd\u548c\u673a\u5668\u5b66\u4e60\u96c6\u6210\uff1a<\/strong> \u901a\u8fc7\u673a\u5668\u5b66\u4e60\u7b97\u6cd5\u548c\u9884\u6d4b\u5206\u6790\u589e\u5f3a\u5a01\u80c1\u68c0\u6d4b\u3002<\/li>\n<li><strong>\u96f6\u4fe1\u4efb\u5373\u670d\u52a1\uff1a<\/strong> \u7b80\u5316\u96f6\u4fe1\u4efb\u5b9e\u65bd\u548c\u7ef4\u62a4\u7684\u6258\u7ba1\u89e3\u51b3\u65b9\u6848\u3002<\/li>\n<li><strong>\u533a\u5757\u94fe\u96c6\u6210\uff1a<\/strong> \u5229\u7528\u533a\u5757\u94fe\u5b9e\u73b0\u5206\u6563\u8eab\u4efd\u548c\u8bbf\u95ee\u7ba1\u7406\u3002<\/li>\n<\/ol>\n<h2>\u4ee3\u7406\u670d\u52a1\u5668\u53ca\u5176\u4e0e\u96f6\u4fe1\u4efb\u7684\u5173\u8054<\/h2>\n<p>\u4ee3\u7406\u670d\u52a1\u5668\u5728\u96f6\u4fe1\u4efb\u73af\u5883\u4e2d\u53d1\u6325\u7740\u91cd\u8981\u4f5c\u7528\uff0c\u5b83\u5145\u5f53\u7528\u6237\u548c\u4ed6\u4eec\u8bbf\u95ee\u7684\u8d44\u6e90\u4e4b\u95f4\u7684\u4e2d\u4ecb\u3002\u4ee3\u7406\u53ef\u4ee5\u901a\u8fc7\u4ee5\u4e0b\u65b9\u5f0f\u589e\u5f3a\u96f6\u4fe1\u4efb\uff1a<\/p>\n<ol>\n<li><strong>\u589e\u5f3a\u8bbf\u95ee\u63a7\u5236\uff1a<\/strong> \u4ee3\u7406\u670d\u52a1\u5668\u53ef\u4ee5\u6267\u884c\u8bbf\u95ee\u7b56\u7565\uff0c\u5728\u8bf7\u6c42\u5230\u8fbe\u5185\u90e8\u8d44\u6e90\u4e4b\u524d\u5bf9\u5176\u8fdb\u884c\u8fc7\u6ee4\u3002<\/li>\n<li><strong>\u4ea4\u901a\u68c0\u67e5\uff1a<\/strong> \u4ee3\u7406\u53ef\u4ee5\u68c0\u67e5\u548c\u8fc7\u6ee4\u5165\u7ad9\u548c\u51fa\u7ad9\u6d41\u91cf\u4ee5\u53d1\u73b0\u6f5c\u5728\u5a01\u80c1\u3002<\/li>\n<li><strong>\u533f\u540d\u548c\u9690\u79c1\uff1a<\/strong> \u4ee3\u7406\u53ef\u4ee5\u4e3a\u7528\u6237\u63d0\u4f9b\u989d\u5916\u7684\u533f\u540d\u5c42\uff0c\u589e\u5f3a\u7528\u6237\u9690\u79c1\u3002<\/li>\n<\/ol>\n<h2>\u76f8\u5173\u94fe\u63a5<\/h2>\n<p>\u6709\u5173\u96f6\u4fe1\u4efb\u53ca\u5176\u5e94\u7528\u7684\u66f4\u591a\u4fe1\u606f\uff0c\u8bf7\u8003\u8651\u63a2\u7d22\u4ee5\u4e0b\u8d44\u6e90\uff1a<\/p>\n<ol>\n<li><a href=\"https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-207.pdf\" target=\"_new\" rel=\"noopener nofollow\">NIST \u5173\u4e8e\u96f6\u4fe1\u4efb\u67b6\u6784\u7684\u7279\u522b\u51fa\u7248\u7269<\/a><\/li>\n<li><a href=\"https:\/\/storage.googleapis.com\/pub-tools-public-publication-data\/pdf\/43231.pdf\" target=\"_new\" rel=\"noopener nofollow\">Google BeyondCorp \u767d\u76ae\u4e66<\/a><\/li>\n<li><a href=\"https:\/\/go.forrester.com\/what-it-means\/ep40\/zero-trust-security\/\" target=\"_new\" rel=\"noopener nofollow\">Forrester \u7814\u7a76\uff1a\u96f6\u4fe1\u4efb\u5b89\u5168<\/a><\/li>\n<li><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/zero-trust\" target=\"_new\" rel=\"noopener nofollow\">Microsoft \u96f6\u4fe1\u4efb\u5b89\u5168<\/a><\/li>\n<\/ol>\n<p>\u603b\u4e4b\uff0c\u96f6\u4fe1\u4efb\u4ee3\u8868\u4e86\u7f51\u7edc\u5b89\u5168\u7684\u4e00\u4e2a\u5173\u952e\u53d1\u5c55\uff0c\u89e3\u51b3\u4e86\u73b0\u4ee3\u5a01\u80c1\u548c\u52a8\u6001\u6570\u5b57\u73af\u5883\u7684\u590d\u6742\u6027\u3002\u901a\u8fc7\u57f9\u517b\u79ef\u6781\u4e3b\u52a8\u548c\u9002\u5e94\u6027\u5f3a\u7684\u5b89\u5168\u601d\u7ef4\uff0c\u96f6\u4fe1\u4efb\u4f7f\u7ec4\u7ec7\u80fd\u591f\u5728\u4e0d\u65ad\u53d8\u5316\u7684\u5a01\u80c1\u73af\u5883\u4e2d\u4fdd\u62a4\u5176\u8d44\u4ea7\u548c\u6570\u636e\u3002<\/p>","protected":false},"featured_media":470994,"menu_order":0,"template":"","meta":{"_acf_changed":false,"content-type":"","inline_featured_image":false,"footnotes":""},"class_list":["post-479753","wiki","type-wiki","status-publish","has-post-thumbnail","hentry"],"acf":{"faq_title":"Frequently Asked Questions about <mark>Zero-Trust: Redefining Security Paradigm in the Digital Age<\/mark>","faq_items":[{"question":"What is Zero-Trust and why is it important?","answer":"<p>Zero-Trust is a cybersecurity framework that challenges the traditional notion of trusting users and devices within a network perimeter. It advocates for continuous verification of user identities, devices, and contextual factors to prevent breaches. This approach is crucial in today's dynamic threat landscape, where traditional security models fall short against evolving cyber threats.<\/p>"},{"question":"How did Zero-Trust originate?","answer":"<p>The concept of Zero-Trust was introduced by Google in 2014 through its \"BeyondCorp\" initiative. This initiative aimed to replace the outdated castle-and-moat approach with a user-centric security model. This marked the beginning of Zero-Trust principles, emphasizing context-aware security and dynamic access controls.<\/p>"},{"question":"What are the key principles of Zero-Trust?","answer":"<p>Zero-Trust operates on the principles of \"never trust, always verify.\" It involves continuous authentication, micro-segmentation, least-privilege access, dynamic access controls, and behavioral analytics. These principles collectively strengthen security by ensuring that users and devices are verified before accessing resources.<\/p>"},{"question":"How does Zero-Trust work?","answer":"<p>Zero-Trust operates by scrutinizing every access attempt, regardless of user location or device. It combines technologies like identity and access management (IAM), multi-factor authentication (MFA), encryption, network segmentation, and continuous monitoring. These measures work together to prevent unauthorized access and swiftly detect anomalies.<\/p>"},{"question":"What types of Zero-Trust exist?","answer":"<p>There are several types of Zero-Trust approaches:<\/p><ul><li><strong>Network Zero-Trust:<\/strong> Focuses on securing network traffic through segmentation and strict access controls.<\/li><li><strong>Data Zero-Trust:<\/strong> Prioritizes data protection by encrypting it and controlling access based on user and context.<\/li><li><strong>Application Zero-Trust:<\/strong> Concentrates on securing individual applications through authentication and authorization.<\/li><\/ul>"},{"question":"What are the benefits of using Zero-Trust?","answer":"<p>Zero-Trust offers numerous benefits, including enhanced security, reduced attack surface, improved compliance, and adaptability to various network architectures. It also enables organizations to accommodate remote workforces and securely leverage cloud technologies.<\/p>"},{"question":"What challenges does Zero-Trust pose?","answer":"<p>Implementing Zero-Trust can be complex, requiring careful planning and integration of diverse technologies. Striking a balance between security and user experience is vital. Adapting Zero-Trust to legacy systems and ensuring consistent enforcement across diverse environments can also be challenging.<\/p>"},{"question":"How does Zero-Trust fit into the future of cybersecurity?","answer":"<p>Zero-Trust is poised for further evolution with the integration of AI, machine learning, and blockchain. These technologies will enhance threat detection, streamline implementation, and provide decentralized identity management solutions.<\/p>"},{"question":"How do proxy servers relate to Zero-Trust?","answer":"<p>Proxy servers play a crucial role in a Zero-Trust environment by acting as intermediaries between users and resources. They enforce access policies, inspect traffic for threats, and enhance user privacy. Proxy servers contribute to a more secure and controlled access environment within the Zero-Trust framework.<\/p>"}]},"_links":{"self":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki\/479753","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki"}],"about":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/types\/wiki"}],"version-history":[{"count":0,"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki\/479753\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/media\/470994"}],"wp:attachment":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/media?parent=479753"}],"curies":[{"name":"\u53ef\u6e7f\u6027\u7c89\u5242","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}