Terminology Index
Glossary
1 term tagged "zta-logical-components"
Showing 1-1 of 1 term
ZTA Logical Components
The logical building blocks of a zero-trust architecture as defined by NIST SP 800-207, Policy Engine, Policy Administrator, Policy Enforcement Point, that describe how access decisions and enforcement work together.
NIST SP 800-207 defines ZTA in logical terms: the Policy Engine (PE) decides; the Policy Administrator (PA) instructs; the Policy Enforcement Point (PEP) enforces. Around them sit data sources (identity, threat, device posture, activity logs) that inform decisions. Recognizing these components, regardless of which specific products implement them, helps practitioners reason about ZTA across vendors. As a ZTA topic, this logical model is the canonical reference framework.
Introduced in: Zero Trust Architecture
Examples
- Mapping a vendor's product onto Policy Engine, Administrator, and Enforcement Point.
- Reasoning about ZTA decisions and enforcement using the NIST logical model.
- Distinguishing decision from enforcement responsibilities in ZTA design.
No related terms linked yet.
