Terminology Index
Glossary
1 term tagged "vpn-limitations"
Showing 1-1 of 1 term
VPN Limitations
Limitations of traditional VPNs that drive zero-trust adoption, perimeter trust on connect, lateral movement once inside, weak device posture, that ZTA replaces with continuous, per-request verification.
Traditional VPNs grant broad network access once a user connects: they place the user 'inside' as if the network perimeter were a meaningful boundary, often with limited device-posture checking and no further verification per request. Once compromised, a VPN session can be a launching pad for lateral movement. Zero-trust architecture is designed to replace this model with per-request verification, device posture, and least-privilege access. As a ZTA topic, recognizing VPN limitations is foundational to understanding why ZTA exists.
Introduced in: Zero Trust Architecture
Examples
- Recognizing how a compromised VPN session enables broad lateral movement.
- Comparing VPN's perimeter-trust model to ZTA's per-request verification.
- Phasing out broad VPN access in favor of zero-trust access for specific resources.
No related terms linked yet.
