SP800-207-DEP-AGENTDevice Agent/Gateway-Based Deployment
SP800-207-DEP-ENCLAVEEnclave-Based Deployment
SP800-207-DEP-PORTALResource Portal-Based Deployment
SP800-207-DEP-SANDBOXDevice Application Sandboxing
SP800-207-MIG-ACTORSMigration Step: Identify Actors on the Enterprise
SP800-207-MIG-ASSETSMigration Step: Identify Assets Owned by the Enterprise
SP800-207-MIG-DEPLOYMigration Step: Identify Candidate Solutions, Deploy, and Expand
SP800-207-MIG-POLICYMigration Step: Formulate Policies for the ZTA Candidate
SP800-207-MIG-PROCESSMigration Step: Identify Key Processes and Evaluate Risks
SP800-207-NET-REQNetwork Requirements to Support ZTA
SP800-207-SC-CONTRACTEDDeployment Scenario: Contracted Services and Nonemployee Access
SP800-207-SC-CROSSENTDeployment Scenario: Collaboration Across Enterprise Boundaries
SP800-207-SC-MULTICLOUDDeployment Scenario: Multi-cloud / Cloud-to-Cloud Enterprise
SP800-207-SC-PUBLICDeployment Scenario: Public- or Customer-Facing Services
SP800-207-SC-SATELLITEDeployment Scenario: Enterprise with Satellite Facilities
SP800-207-SUP-CDMContinuous Diagnostics and Mitigation (CDM) System
SP800-207-SUP-COMPLYIndustry Compliance System
SP800-207-SUP-DAPData Access Policies
SP800-207-SUP-IDMIdentity Management System
SP800-207-SUP-LOGSNetwork and System Activity Logs
SP800-207-SUP-PKIEnterprise Public Key Infrastructure (PKI)
SP800-207-SUP-SIEMSecurity Information and Event Management (SIEM) System
SP800-207-SUP-THREATThreat Intelligence Feeds
SP800-207-TA-CONTEXTSingular vs Contextual Trust Algorithm
SP800-207-TA-CRITERIACriteria-Based vs Score-Based Trust Algorithm
SP800-207-THR-CREDSThreat: Stolen Credentials and Insider Threat
SP800-207-THR-DOSThreat: Denial-of-Service or Network Disruption
SP800-207-THR-NPEThreat: Use of Non-Person Entities (NPE) in ZTA Administration
SP800-207-THR-PROPRIETARYThreat: Reliance on Proprietary Data Formats or Solutions
SP800-207-THR-STORAGEThreat: Storage of System and Network Information
SP800-207-THR-SUBVERTThreat: Subversion of ZTA Decision Process
SP800-207-THR-VISIBILITYThreat: Limited Visibility on the Network
SP800-207-2.2Tenet 2: All Communication Secured Regardless of Network
SP800-207-4.2Micro Segmentation Deployment