Build a zero trust architecture
Protect named resources through explicit verification, least privilege, complete mediation, and assumed breach.
Topic index
Learn the principles, trust boundaries, and request checks that define a zero trust architecture.
Topic index
Pomerium attaches identity-aware policy to named routes. It evaluates each protected HTTP request. It validates TCP and WebSocket policy when the connection starts. The upstream service still owns its resource and action permissions.
1 learning path
Protect named resources through explicit verification, least privilege, complete mediation, and assumed breach.
13 related guides
Apply user and workload identity across APIs, gateways, meshes, sidecars, clusters, clouds, and application resources.
Use network segmentation to limit reachability and identity policy to decide access to named services, resources, and actions.
Compare device agent and gateway, enclave gateway, resource portal, and application sandbox deployment boundaries.
Replace implicit network access with a named, identity-aware route and verify identity, policy, bypass, evidence, and recovery.
Place identity, transport, route, and application policy across mesh gateways, sidecars, ambient proxies, and workloads.
Place policy administration, information, decision, enforcement, distribution, and evidence components in one access system.
Place policy administration, decision, information, and enforcement components across control and data planes.
Distinguish the device, its key, ownership, management state, health evidence, policy, and freshness limits.
Distinguish a resource-centered security architecture from a product pattern that brokers selected remote access.
Trace human and workload identity across clouds and find direct, federation, routing, control-plane, and recovery bypass paths.
Trace one protected request, find trust boundaries and bypass paths, and test which access decisions belong at the gateway and application.
Trace DNS, TLS, authentication, session, route, policy, upstream, application authorization, response, and evidence.
Keep routing, segmentation, firewalls, naming, transport protection, and availability controls without using location as trust.
19 related terms
Agentic Access Management controls agent actions with originating identity, explicit delegation, per-request policy, enforcement, and audit evidence.
Design as if one identity, credential, workload, route, or control will fail, then limit movement and impact.
Distinguish browser or native-client access from broad network tunnels and state which protocols still require a local connector.
Continuous verification means that a system continues to evaluate authorization during a session instead of treating the initial login as permanent trust.
Separate the systems that define and distribute access policy from the request path that enforces it on live traffic.
Device posture is the current security state of a device.
A hidden trust boundary exists when one component accepts another component's identity, authority, data, or result without an explicit enforced rule.
An implicit trust zone grants authority from location, membership, or prior access without a resource-specific decision.
The primary security goal of micro-segmentation is to limit which workloads can communicate and reduce lateral movement after compromise.
Grant access to one named application or service without extending general reachability to its network or neighboring systems.
Per-request authorization evaluates each action against current identity, resource, policy, and request context immediately before enforcement.
Limit authority by resource, action, context, and time, then remove access when the assigned function ends.
Measure how long a disabled identity, authenticator, session, claim, or permission can continue to authorize action.
A software-defined perimeter hides protected services from unauthorized requesters and establishes identity-controlled connectivity.
Find authorization decisions that outlive the identity, relationship, policy, resource state, or request they evaluated.
Map where data or authority crosses between components with different control, identity, or assurance assumptions.
Zero trust does not assume that every user or device is malicious.
ZTNA is an access approach that applies zero trust principles to connections between subjects and specific private resources.
A zero trust trust algorithm combines subject, resource, action, context, policy, and confidence into an access decision.