1/13
Vocabulary flashcards covering key concepts and components of SASE and SSE, including SDN foundations, core security services (SWG, CASB, ZTNA), cloud-provider mappings (AWS VPC, Azure Virtual WAN/ExpressRoute, Google Interconnect/VPN), and related architectural ideas like cloud-native services and perimeterless security.
Name | Mastery | Learn | Test | Matching | Spaced |
---|
No study sessions yet.
SASE (Secure Access Service Edge)
A cloud-native architecture that consolidates WAN and security functions into a single service to provide secure, seamless access for end users regardless of location.
SSE (Security Service Edge)
A subset of SASE focused on security services that protect data and interactions between users/devices and the cloud (SWG, CASB, ZTNA).
SDN (Software-Defined Networking)
A networking approach used by SASE to deliver security and networking services from the cloud rather than traditional hardware appliances.
SWG (Secure Web Gateway)
A security service that inspects and filters web traffic to block malware and enforce policy compliance.
CASB (Cloud Access Security Broker)
A border device that sits between cloud consumers and providers to monitor activity, enforce policies, and provide visibility and data security.
ZTNA (Zero Trust Network Access)
A security model that grants access based on identity and context, assuming no trust by default.
AWS VPC (Amazon Virtual Private Cloud)
Amazon's virtual network in the cloud that creates a secure, isolated network and can connect to on-premises data centers or other AWS services to enable SASE-like connectivity.
Azure Virtual WAN
Azure service providing secure, global connectivity between branches, data centers, and Azure resources.
Azure ExpressRoute
Azure service enabling a dedicated private connection between on-premises infrastructure and Azure data centers.
Google Cloud Interconnect
GCP service for connecting on-premises infrastructure to Google Cloud over a dedicated private link.
Google Cloud VPN
GCP service that creates an IPsec VPN tunnel between on-prem infrastructure and a VPC in Google Cloud.
Cloud-native service
A service designed to run in the cloud, with managed infrastructure, scalability, and global reach.
Perimeterless security model
A security approach where traditional network perimeters are dissolved and security is applied at the identity/device level and in cloud services.
Backhauling
The practice of sending network traffic to a central location for inspection; SASE/SSE aim to reduce backhaul to improve latency.