Terminology Index

Glossary

57 terms starting with "M"

Open concept maps

Showing 1-32 of 57 terms

M
32

Microsegmentation Principles

The principles behind microsegmentation in zero trust, granular, identity-aware segmentation between workloads so each can only reach what it needs, with default-deny and continuous policy enforcement.

Microsegmentation in zero-trust architecture replaces broad network zones with fine-grained, often identity-aware, controls between workloads. Its principles are default-deny between segments, least-privilege paths only for needed communication, identity- and context-aware policy rather than just IP, and continuous enforcement so policy holds as workloads change. Together these principles limit lateral movement dramatically, since a compromised workload can reach only its explicitly allowed peers, supporting zero trust's 'never trust, always verify.'

Introduced in: Zero Trust Architecture

Examples

  • Default-denying traffic between workloads and explicitly allowing only needed paths.
  • Using identity-aware policy rather than IP-based rules.
  • Continuously enforcing microsegmentation as workloads change.

No related terms linked yet.