Review of zero trust network and its key technologies

Qun WANG1, Quan YUAN2, Fujuan LI1(), Lingling XIA1   

  1. 1.Department of Computer Information and Cybersecurity,Jiangsu Police Institute,Nanjing Jiangsu 210031,China
    2.Library and Information Center,China Pharmaceutical University,Nanjing Jiangsu 210009,China
  • Received:2022-04-08 Revised:2022-06-13 Accepted:2022-06-15 Online:2023-04-11 Published:2023-04-10
  • Contact: Fujuan LI
With increasingly severe network security threats and increasingly complex security defense means, zero trust network is a new evaluation and review of traditional boundary security architecture. Zero trust emphasizes never always trusting anything and verifying things continuously. Zero trust network emphasizes that the identity is not identified by location, all access controls strictly execute minimum permissions, and all access processes are tracked in real time and evaluated dynamically. Firstly, the basic definition of zero trust network was given, the main problems of traditional perimeter security were pointed out, and the zero trust network model was described. Secondly, the key technologies of zero trust network, such as Software Defined Perimeter (SDP), identity and access management, micro segmentation and Automated Configuration Management System (ACMS), were analyzed. Finally, zero trust network was summarized and its future development was prospected.

Key words: zero trust, network security, security model, automatic system, micro segmentation



关键词: 零信任, 网络安全, 安全模型, 自动化系统, 微隔离

