Micro-segmentation Flashcards
4.1.11
Micro-segmentation
Takes the concept of logical segmentation to a more granular level by further dividing apps or workloads. The small segments or microsegments contain a specific workload or functionally similar/identical nodes. Policies and controls are then targeted to these microsegments.
Micro-segmentation limits scope of impact, outage, or breach (lateral movements, etc)
Network Overlay
Uses a method of encapsulation such as tunneling to package and transport data. This encapsulation allows data packets from the overlay to be wrapped and transported across the underlying network as if they were part of that network.
Distributed Firewalls
Network security solution that applies firewall policy to all devices in a network. Work across many points in the network. Use software agents installed on each network device that enforce network’s security policy on all incoming and outgoing traffic.
Zero Trust
No user, endpoint, application, or workload can be trusted without verification. It can be applied in a dynamic environment with micosegmentation.