
2/19/2020 · Mark Loveless
What this post added
This post discusses challenges in data classification within a Zero Trust framework, specifically the 'fluidity of data' where classification changes rapidly after initial authentication. It introduces the concept of 'data zones' as a temporary solution and highlights the ongoing search for a more granular access control mechanism. It also details the vendor selection process for an Identity Management System (IMS), focusing on Okta's flexibility in supporting multi-factor authentication (MFA) with choices like U2F (Yubikeys) and push technology via the Okta Verify app. The post emphasizes the importance of user identity and authentication as a cornerstone, but also points to the need for end-user device identity, process identity, and comprehensive auditing and logging capabilities within a Zero Trust implementation.