# zero trust networking

Published articles for zero trust networking.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Teleport's Evolution: Today's Name Changes Reflect a Strategic Shift in Infrastructure Security

DevFeed: [Teleport's Evolution: Today's Name Changes Reflect a Strategic Shift in Infrastructure Security](<https://devfeed.tech/articles/teleport-s-evolution-today-s-name-changes-reflect-a-strategic-shift-in-infrastructure-security-29919.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/teleport-evolution-shift-in-infrastructure-security/>)

Author: diana.jovin@goteleport.com (Diana Jovin)

Published: 2025-02-25T00:00:00Z

Content type: release

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Zero Trust](<https://devfeed.tech/topics/zero-trust.md>), [zero trust networking](<https://devfeed.tech/topics/zero-trust-networking.md>), [zero trust security](<https://devfeed.tech/topics/zero-trust-security.md>), [trust](<https://devfeed.tech/topics/trust.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>)

Tags: [change](<https://devfeed.tech/tags/change.md>), [evolution](<https://devfeed.tech/tags/evolution.md>), [platform](<https://devfeed.tech/tags/platform.md>), [product](<https://devfeed.tech/tags/product.md>), [rebranding](<https://devfeed.tech/tags/rebranding.md>), [security](<https://devfeed.tech/tags/security.md>), [zero-trust](<https://devfeed.tech/tags/zero-trust.md>), [zero-trust-networking](<https://devfeed.tech/tags/zero-trust-networking.md>), [zero-trust-security](<https://devfeed.tech/tags/zero-trust-security.md>)

### AI overview

Teleport announces new names for its product suite, including Teleport Infrastructure Identity Platform, Teleport Zero Trust Access, Teleport Identity Governance, and Teleport Identity Security. The article says the changes emphasize infrastructure identity, zero trust, governance, and security operations.

### Source excerpt

Teleport is evolving to better align with our mission and help customers understand the full potential of our platform with new names for our product suite.

## The principle of minimalism

DevFeed: [The principle of minimalism](<https://devfeed.tech/articles/the-principle-of-minimalism-13267.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/the-principle-of-minimalism>)

Published: 2023-06-22T00:00:00Z

Content type: opinion

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Docker](<https://devfeed.tech/topics/docker.md>), [systems](<https://devfeed.tech/topics/systems.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [docker](<https://devfeed.tech/tags/docker.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [iam](<https://devfeed.tech/tags/iam.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [kubernetes-security](<https://devfeed.tech/tags/kubernetes-security.md>), [least-privilege](<https://devfeed.tech/tags/least-privilege.md>), [secure-by-default](<https://devfeed.tech/tags/secure-by-default.md>), [security](<https://devfeed.tech/tags/security.md>), [software-security-audit](<https://devfeed.tech/tags/software-security-audit.md>), [software-security-practices](<https://devfeed.tech/tags/software-security-practices.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [zero-trust-networking](<https://devfeed.tech/tags/zero-trust-networking.md>), [zero-trust-security](<https://devfeed.tech/tags/zero-trust-security.md>)

### AI overview

This engineering commentary argues that systems should use secure-by-default minimalism: defaults should expose only what users actually need, while deviations should be intentional and audited. It uses Docker and Kubernetes examples, including root containers, mutable deployment references, and secret handling, and introduces access-control applications such as non-root execution and minimal seccomp profiles.

### Source excerpt

Learn about the principle of minimalism in engineering, where your default should be the lowest-common denominator of what you actually need.

## 14 Best Practices to Secure SSH Bastion Host

DevFeed: [14 Best Practices to Secure SSH Bastion Host](<https://devfeed.tech/articles/14-best-practices-to-secure-ssh-bastion-host-29837.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/security-hardening-ssh-bastion-best-practices/>)

Author: sakshyam.shah@goteleport.com (Sakshyam Shah)

Published: 2022-01-13T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [OpenSSH](<https://devfeed.tech/topics/openssh.md>), [ssh](<https://devfeed.tech/topics/ssh.md>), [Server](<https://devfeed.tech/topics/server.md>), [Network Configuration](<https://devfeed.tech/topics/network-configuration.md>), [zero trust networking](<https://devfeed.tech/topics/zero-trust-networking.md>), [Ubuntu](<https://devfeed.tech/topics/ubuntu.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>)

Tags: [bastion](<https://devfeed.tech/tags/bastion.md>), [bastion-host](<https://devfeed.tech/tags/bastion-host.md>), [best-practices](<https://devfeed.tech/tags/best-practices.md>), [configuration](<https://devfeed.tech/tags/configuration.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [hardening](<https://devfeed.tech/tags/hardening.md>), [high-availability](<https://devfeed.tech/tags/high-availability.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [linux](<https://devfeed.tech/tags/linux.md>), [lts](<https://devfeed.tech/tags/lts.md>), [network](<https://devfeed.tech/tags/network.md>), [network-configuration](<https://devfeed.tech/tags/network-configuration.md>), [networking](<https://devfeed.tech/tags/networking.md>), [openssh](<https://devfeed.tech/tags/openssh.md>), [operations](<https://devfeed.tech/tags/operations.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [ubuntu](<https://devfeed.tech/tags/ubuntu.md>), [zero-trust-networking](<https://devfeed.tech/tags/zero-trust-networking.md>)

### AI overview

This tutorial presents 14 best practices for building and deploying a security-hardened SSH bastion host using OpenSSH. It covers reducing the server attack surface, configuring the surrounding network, applying zero trust networking principles, hardening the operating system and authentication, and deploying for high availability.

### Source excerpt

Learn 14 best practices to build and deploy a security-hardened SSH bastion host based on OpenSSH server.

## 10 Reasons You Need Teleport to Secure Your Apps on AWS

DevFeed: [10 Reasons You Need Teleport to Secure Your Apps on AWS](<https://devfeed.tech/articles/10-reasons-you-need-teleport-to-secure-your-apps-on-aws-29798.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/reinvent-2021/>)

Author: info@goteleport.com (Steven Martin)

Published: 2021-11-29T00:00:00Z

Content type: opinion

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Security](<https://devfeed.tech/topics/security.md>), [AWS Management Console](<https://devfeed.tech/topics/aws-management-console.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [Amazon EC2](<https://devfeed.tech/topics/amazon-ec2.md>), [Amazon Elastic Kubernetes Service](<https://devfeed.tech/topics/amazon-elastic-kubernetes-service.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [DevOps](<https://devfeed.tech/topics/devops.md>), [GitLab](<https://devfeed.tech/topics/gitlab.md>), [Jenkins](<https://devfeed.tech/topics/jenkins.md>), [HashiCorp Vault](<https://devfeed.tech/topics/hashicorp-vault.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [aws-management-console](<https://devfeed.tech/tags/aws-management-console.md>), [cli](<https://devfeed.tech/tags/cli.md>), [devops](<https://devfeed.tech/tags/devops.md>), [ec2](<https://devfeed.tech/tags/ec2.md>), [gitlab](<https://devfeed.tech/tags/gitlab.md>), [hashicorp-vault](<https://devfeed.tech/tags/hashicorp-vault.md>), [jenkins](<https://devfeed.tech/tags/jenkins.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [provisioning](<https://devfeed.tech/tags/provisioning.md>), [security](<https://devfeed.tech/tags/security.md>), [zero-trust-networking](<https://devfeed.tech/tags/zero-trust-networking.md>)

### AI overview

A promotional article presents ten reasons to use Teleport for securing applications and infrastructure access on AWS. The supplied sections describe identity-aware, role-based access controls for the AWS Management Console and CLI, temporary elevated access, access controls for EC2, databases, EKS clusters, and DevOps tools, plus zero-trust networking.

### Source excerpt

Just in time for re:Invent 2021, here is the list of top 10 things you should know about AWS and Teleport.

## Inside Figma: getting out of the (secure) shell

DevFeed: [Inside Figma: getting out of the (secure) shell](<https://devfeed.tech/articles/inside-figma-getting-out-of-the-secure-shell-9851.md>)

Original publisher: [Read original article](<https://www.figma.com/blog/inside-figma-getting-out-of-the-secure-shell/>)

Author: Hongyi Hu

Published: 2021-09-02T00:00:00Z

Content type: article

Language: en

Sources: [Figma Blog](<https://devfeed.tech/sources/figma-blog.md>)

Topics: [Figma](<https://devfeed.tech/topics/figma.md>), [Zero Trust](<https://devfeed.tech/topics/zero-trust.md>), [Security](<https://devfeed.tech/topics/security.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>), [ssh](<https://devfeed.tech/topics/ssh.md>), [OpenSSH](<https://devfeed.tech/topics/openssh.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [aws](<https://devfeed.tech/tags/aws.md>), [figma](<https://devfeed.tech/tags/figma.md>), [logging](<https://devfeed.tech/tags/logging.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [security](<https://devfeed.tech/tags/security.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [sso](<https://devfeed.tech/tags/sso.md>), [zero-trust](<https://devfeed.tech/tags/zero-trust.md>), [zero-trust-networking](<https://devfeed.tech/tags/zero-trust-networking.md>)

### AI overview

This Inside Figma article describes how Figma's security team built a zero-trust shell access system on AWS using AWS SSO and Systems Manager. It explains the limitations of bastion-host SSH access at scale and outlines goals including smooth user experience, phishing-resistant multi-factor authentication, short-lived rotating credentials, centralized logging, minimal maintenance effort, and incremental rollout.

### Source excerpt

Security Engineer Hongyi Hu explains how the Figma security team built a simple solution for zero-trust shell access on AWS.