Terminology Index

Glossary

1 term tagged "vpn-limitations" starting with "V"

Open concept maps

Showing 1-1 of 1 term

V
1

VPN Limitations

Limitations of traditional VPNs that drive zero-trust adoption, perimeter trust on connect, lateral movement once inside, weak device posture, that ZTA replaces with continuous, per-request verification.

Traditional VPNs grant broad network access once a user connects: they place the user 'inside' as if the network perimeter were a meaningful boundary, often with limited device-posture checking and no further verification per request. Once compromised, a VPN session can be a launching pad for lateral movement. Zero-trust architecture is designed to replace this model with per-request verification, device posture, and least-privilege access. As a ZTA topic, recognizing VPN limitations is foundational to understanding why ZTA exists.

Introduced in: Zero Trust Architecture

Examples

  • Recognizing how a compromised VPN session enables broad lateral movement.
  • Comparing VPN's perimeter-trust model to ZTA's per-request verification.
  • Phasing out broad VPN access in favor of zero-trust access for specific resources.

No related terms linked yet.