// THREAT DETECTION AND DATA PRIVACY TERM

ZTNA

ZTNA, or Zero Trust Network Access, is a modern security approach that grants users access only to the specific applications and data they need, rather than the entire network. It continuously verifies every user and device before allowing access, regardless of whether they are inside or outside the traditional network perimeter.

ZTNA — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

Zero Trust Network Access (ZTNA) is a cybersecurity framework and architectural model implementing identity-centric, granular access control to enterprise applications and resources, fundamentally shifting from perimeter-based security to a 'never trust, always verify' paradigm by continuously authenticating users and devices irrespective of their network location.

BACKGROUND

ZeroTier, Inc. is a networking software and cybersecurity company with a freemium business model based in San Francisco, California. ZeroTier provides a proprietary network platform and software tools, SDKs, and related commercial products and services to create and manage virtual software-defined networks. The company's flagship end-user product, ZeroTier One, offers a client application that enables devices, such as PCs, phones, servers, routers, and embedded devices to securely connect to zero-trust peer-to-peer virtual networks.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Zero Trust Access
  • Software-Defined Perimeter (SDP)
  • Identity-Aware Proxy (IAP)
  • Perimeterless security

USAGE NOTE

ZTNA is widely deployed to secure remote workforces and hybrid cloud environments, enhancing security postures by drastically reducing the attack surface compared to traditional VPNs.

DEVELOPERS

Organizations developing technology related to ZTNA.

  • Zscaler

    A global leader in cloud security, providing a cloud-native platform for Zero Trust Network Access (ZTNA) to secure access to applications and data for remote users, branches, and clouds.

  • Palo Alto Networks

    Offers ZTNA capabilities as part of its SASE solution, Prisma Access, securing access to applications for a hybrid workforce and integrating advanced threat prevention.

  • CrowdStrike

    Provides Zero Trust solutions, including ZTNA, through its Falcon platform, enabling conditional access based on device health, user identity, and other risk factors without traditional VPNs.

  • Microsoft

    Integrates ZTNA principles within its Microsoft Entra (formerly Azure AD) and Microsoft Defender for Cloud Apps services, enabling secure, identity-centric access to applications and resources.

  • Cloudflare

    Offers Cloudflare One, a comprehensive SASE platform that includes robust ZTNA services to provide secure, fast, and reliable access to internal applications for any user, from any device, anywhere.

  • Okta

    Specializes in identity-centric ZTNA solutions, providing secure access to applications and APIs through its Workforce Identity Cloud and Access Gateway, ensuring that only authenticated and authorized users and devices can connect.

  • Fortinet

    Delivers ZTNA solutions through its FortiClient ZTNA and FortiGate integration, enabling organizations to verify every user and device before granting access to applications and data, enforcing least-privilege access.

  • Cisco

    Provides ZTNA capabilities as part of Cisco Secure Access, leveraging technologies like Duo Security and Umbrella to verify user identity, device health, and network context before granting access to enterprise applications.

RELATED TERMS IN DEFENSE & ARCHITECTURE