Terminology Index
Glossary
1 term tagged "microsegmentation-principles"
Showing 1-1 of 1 term
Microsegmentation Principles
The principles behind microsegmentation in zero trust, granular, identity-aware segmentation between workloads so each can only reach what it needs, with default-deny and continuous policy enforcement.
Microsegmentation in zero-trust architecture replaces broad network zones with fine-grained, often identity-aware, controls between workloads. Its principles are default-deny between segments, least-privilege paths only for needed communication, identity- and context-aware policy rather than just IP, and continuous enforcement so policy holds as workloads change. Together these principles limit lateral movement dramatically, since a compromised workload can reach only its explicitly allowed peers, supporting zero trust's 'never trust, always verify.'
Introduced in: Zero Trust Architecture
Examples
- Default-denying traffic between workloads and explicitly allowing only needed paths.
- Using identity-aware policy rather than IP-based rules.
- Continuously enforcing microsegmentation as workloads change.
No related terms linked yet.
