<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Them: How do we add zero trust to this]]></title><description><![CDATA[<p>Them: How do we add zero trust to this?<br />Me: :stares:</p><p>Zero trust, like least-privilege, is a framework for thinking about problems. It's not a seasoning you sprinkle over your eggs.</p>]]></description><link>https://forum.fedi.dk/topic/c3fa95a6-6362-46dc-a8b2-b32b43b95fe5/them-how-do-we-add-zero-trust-to-this</link><generator>RSS for Node</generator><lastBuildDate>Mon, 25 May 2026 20:19:52 GMT</lastBuildDate><atom:link href="https://forum.fedi.dk/topic/c3fa95a6-6362-46dc-a8b2-b32b43b95fe5.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 19 May 2026 14:25:17 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Wed, 20 May 2026 06:09:11 GMT]]></title><description><![CDATA[<p><span><a href="https://gts.tabby.rocks/@sam">@<span>sam</span></a></span> <span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> what I gathered from talking to a vendor at a security conference is that it's definitely not VPNs no matter the context when I told him that we had reimplemented parts of the OpenVPN protocol.</p>]]></description><link>https://forum.fedi.dk/post/https://social.data.coop/users/reynir/statuses/116605409814433579</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://social.data.coop/users/reynir/statuses/116605409814433579</guid><dc:creator><![CDATA[reynir@social.data.coop]]></dc:creator><pubDate>Wed, 20 May 2026 06:09:11 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 19:43:20 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> "Well, my trust in your organization already dropped significantly, throw in some post-quantum AI blockchain and I bet we can get to zero"</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.social/users/reedmideke/statuses/116602948856064202</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.social/users/reedmideke/statuses/116602948856064202</guid><dc:creator><![CDATA[reedmideke@mastodon.social]]></dc:creator><pubDate>Tue, 19 May 2026 19:43:20 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 17:34:36 GMT]]></title><description><![CDATA[<p><span><a href="/user/emily%40infosec.exchange">@<span>Emily</span></a></span> sadly, I can't disagree. This is why I continue to try and push for new ideas and new approaches. We've tried the same thing over and over, and failed. At some point, let's try something new, and potentially still fail, but at least maybe learn something.</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116602442628230340</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116602442628230340</guid><dc:creator><![CDATA[petrillic@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 17:34:36 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 17:28:39 GMT]]></title><description><![CDATA[<p><span><a href="/user/emily%40infosec.exchange">@<span>Emily</span></a></span> <span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> that's the only way to have good security. It's not something that can be effectively bolted on - it needs to be part of the design from day 1.</p>]]></description><link>https://forum.fedi.dk/post/https://twit.social/users/brass75/statuses/116602419245638262</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://twit.social/users/brass75/statuses/116602419245638262</guid><dc:creator><![CDATA[brass75@twit.social]]></dc:creator><pubDate>Tue, 19 May 2026 17:28:39 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 17:27:32 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> </p><p>I've rarely worked at a place where they let you build in security from the start, rather than something they think they can add after everything else is done.</p><p>And almost nobody, no matter the industry, will make an asset inventory for me to use.</p>]]></description><link>https://forum.fedi.dk/post/https://infosec.exchange/users/Emily/statuses/116602414887745783</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://infosec.exchange/users/Emily/statuses/116602414887745783</guid><dc:creator><![CDATA[emily@infosec.exchange]]></dc:creator><pubDate>Tue, 19 May 2026 17:27:32 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 16:31:52 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io" rel="nofollow noreferrer noopener">@<span>petrillic</span></a></span> there are a ton of cool cryptographic widgets coming down the pipe to be excited about, like zero-knowledge proofs, homomorphic encryption, etc. too!</p>]]></description><link>https://forum.fedi.dk/post/https://gts.tabby.rocks/users/sam/statuses/01KS0H8NN77FB7HC707AEWGNFM</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://gts.tabby.rocks/users/sam/statuses/01KS0H8NN77FB7HC707AEWGNFM</guid><dc:creator><![CDATA[sam@gts.tabby.rocks]]></dc:creator><pubDate>Tue, 19 May 2026 16:31:52 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 16:25:47 GMT]]></title><description><![CDATA[<p><span><a href="https://gts.tabby.rocks/@sam">@<span>sam</span></a></span> correct, it should have eto establish trust as well. Certificates are part of it, but it's inadequate. Unfortunately, i don't think the industry has really grappled with this.</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116602172016740103</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116602172016740103</guid><dc:creator><![CDATA[petrillic@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 16:25:47 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 15:24:36 GMT]]></title><description><![CDATA[<p><span><a href="https://gts.tabby.rocks/@sam">@<span>sam</span></a></span> part of the challenge is that vendors have weaponized the terminology to describe whatever new product or feature they're peddling.</p><p>My distillation is: 1) Everything secure always; 2) Everything means everything, no implicit trust; 3) Access is granted per-session/request and strictly enforced, explicit trust; 4) Policy and decisions account for all available surveillance data.</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116601931462897780</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116601931462897780</guid><dc:creator><![CDATA[petrillic@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 15:24:36 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 14:44:02 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io" rel="nofollow noopener">@<span>petrillic</span></a></span> *tells everyone to stop trusting the service* there, zero trust added</p>]]></description><link>https://forum.fedi.dk/post/https://toot.cat/users/rnd/statuses/116601771925776045</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://toot.cat/users/rnd/statuses/116601771925776045</guid><dc:creator><![CDATA[rnd@toot.cat]]></dc:creator><pubDate>Tue, 19 May 2026 14:44:02 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 14:37:49 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> </p><p>"what if you shard it?"</p><p>(as long as we're being serious about it)</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/maya_b/statuses/116601747534853997</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/maya_b/statuses/116601747534853997</guid><dc:creator><![CDATA[maya_b@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 14:37:49 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 14:37:17 GMT]]></title><description><![CDATA[<p><span><a href="/user/maya_b%40hachyderm.io">@<span>maya_b</span></a></span> do you want scaled agile? Because this is how you get scaled agile.</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116601745402597057</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/petrillic/statuses/116601745402597057</guid><dc:creator><![CDATA[petrillic@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 14:37:17 GMT</pubDate></item><item><title><![CDATA[Reply to Them: How do we add zero trust to this on Tue, 19 May 2026 14:27:08 GMT]]></title><description><![CDATA[<p><span><a href="/user/petrillic%40hachyderm.io">@<span>petrillic</span></a></span> </p><p>"but agile..."</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/maya_b/statuses/116601705516163489</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/maya_b/statuses/116601705516163489</guid><dc:creator><![CDATA[maya_b@hachyderm.io]]></dc:creator><pubDate>Tue, 19 May 2026 14:27:08 GMT</pubDate></item></channel></rss>