Introduction to SDP - SDP History, Benefits, & Concepts Flashcards
(81 cards)
What does SDP stand for?
Software Defined Perimeter
SDP is a network security architecture that enhances security across various layers of the OSI model.
What is the primary function of SDP?
To provide security for all layers of the OSI model by hiding assets and establishing trust via a separate control and data plane.
How does SDP establish trust before exposing assets?
By using a single packet to establish trust through device attestation and identity verification.
True or False: SDP has roots in the Zero Trust (ZT) security model.
True
What is the goal of SDP in relation to unsecured networks?
To isolate services from unsecured networks and allow infrastructure and application owners to deploy perimeter functionality.
What does SDP overlay on existing infrastructure?
Logical components that should be operated under the control of the application owner.
Fill in the blank: SDP only grants access to the application infrastructure after _______.
device attestation and identity verification.
What is the relationship between SDP and Zero Trust Architecture (ZTA)?
SDP is categorized as an implementation option of Zero Trust Architecture.
What does the CSA define SDP as?
A network security architecture implemented to provide security for all layers of the OSI model.
What are the two planes involved in SDP?
Control plane and data plane.
What does SDP stand for?
Software-Defined Perimeter
SDP is a security framework that enhances the protection of organizational assets.
What is the premise of SDP?
Organizations should not implicitly trust anything inside or outside the network.
What is required for users to access hidden assets in an SDP implementation?
Users on validated devices must cryptographically sign in.
What type of firewall does SDP use?
Drop-all firewall.
How does SDP establish trust for connections?
Using a single packet to establish trust via a separate control plane.
What does SDP provide for connections to hidden assets?
Mutual verification of connections in a data plane.
Name some controls that SDP integrates.
- Applications
- Firewalls
- Clients
- Encryption
- Identity and Access Management (IAM)
- Session Management
- Device Management
What are the two main principles of SDP architecture?
Least privilege and segregation of duties.
What is a key control used in SDP related to firewalls?
Dynamic rules on drop-all firewalls.
What does SDP do to servers and services?
Hides servers and services.
What is required before allowing connections in SDP?
Authentication before connections.
Fill in the blank: SDP uses _______ for authorization.
Single Packet Authorization (SPA).
What type of communications does SDP utilize for security?
Bi-directional encrypted communications like mutual transport layer security (mTLS).
What type of access control does SDP implement?
Fine-grained access control and device validation.