This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision | |||
|
dido:public:ra:xapend:xapend.b_stds:tech:nist:zta [2021/08/06 14:12] murphy [Introduction] |
dido:public:ra:xapend:xapend.b_stds:tech:nist:zta [2021/08/18 11:50] (current) murphy |
||
|---|---|---|---|
| Line 28: | Line 28: | ||
| applications, virtual and cloud components) and subjects (end-users, applications, and other nonhuman entities that request information from resources). Throughout this document, “subject” | applications, virtual and cloud components) and subjects (end-users, applications, and other nonhuman entities that request information from resources). Throughout this document, “subject” | ||
| will be used unless the section relates directly to a human end-user in which “user” will be | will be used unless the section relates directly to a human end-user in which “user” will be | ||
| - | specifically used instead of the more generic “subject.” Zero trust security models assume that an | + | specifically used instead of the more generic “subject.” [[dido:public:ra:xapend:xapend.a_glossary:z:zero-trust_model|Zero trust security models]] assume that an |
| attacker is present in the environment and that an enterprise-owned environment is no | attacker is present in the environment and that an enterprise-owned environment is no | ||
| different—or no more trustworthy—than any nonenterprise-owned environment. In this new | different—or no more trustworthy—than any nonenterprise-owned environment. In this new | ||