you are viewing a single comment's thread
view the rest of the comments
[–] 44 points 9 months ago (3 children)

Wouldn't it be enough to just create a seperate subnet?

  • source
  • hideshow 6 child comments
  • [–] 37 points 9 months ago (1 child)

    Yeah that's where it turned from story to joke for me

  • source
  • parent
  • hideshow 2 child comments
  • [–] 17 points 9 months ago

    They’re specifically talking about Zero Trust though and treating it like a corporate device as the joke. This means authenticate at every layer, RBAC, and endpoint security compliance before allowing access to a service. Putting the device into an isolated guest VLAN works too of course.

  • source
  • parent
  • [–] 5 points 9 months ago (1 child)

    Yeah, he did that...and then kept going for some reason. A separate subnet in a separate firewall zone that doesn't forward anywhere but the internet should be sufficiently safe

  • source
  • parent
  • hideshow 2 child comments
  • [–] 8 points 9 months ago (1 child)