
Explore zero trust network access with practical, hands-on labs that move beyond vpn, using real-world scenarios to build a more secure and resilient network.
Explore zero trust network access with OpenZiti, compare it to traditional VPNs, and deploy with OpenCV in a hands-on lab from theory to practice.
Learn zero trust principles—never trust, always verify—through least privileged access, continuous verification, micro-segmentation, identity-based access, and end-to-end encryption in modern cloud and remote work.
Explore the least privileged access within zero trust, granting users only the resources they need and using role-based and policy-based controls integrated with identity and access management to minimize exposure.
Learn how continuous verification enforces zero trust by ongoing identity, device health, and behavior checks, preventing session hijacks with real-time risk scoring and multi-factor authentication.
Learn how micro-segmentation isolates network zones to stop lateral movement even if one segment is compromised. Apply assume-breach principles with continuous verification, incident detection, and rapid re-authentication to limit impact.
Explore identity based access in a zero trust model, where contextual factors and adaptive authentication determine dynamic access, complemented by end-to-end encryption protecting data in transit and at rest.
Explore how vpn technologies secure remote access and site-to-site connections, with ipsec tunneling and strong authentication, and learn how zero trust network access addresses vpn limitations.
Discover how zero trust network access overcomes VPN challenges. Enforce least-privilege access, fine-grained segmentation, device posture checks, and context-aware controls for scalable, low-latency access.
Explore OpenZiti’s zero trust network access benefits, including open source, device support, end to end encryption, reduced attack surfaces, and dynamic identity based access for cloud, on premises, and IoT.
Explore the core concepts of OpenZiti, including the ZT controller, edge routers, fabric router, ZT clients, identities, and services. Learn how policy-based access control governs zero trust connections.
Deploy a real-world zero trust lab with OpenZiti, linking on-prem, remote, and cloud environments to securely access an Azure web app via controller, routers, and a client.
Ignore the small left crop in the next four to five videos; it won't affect your learning, and the window will display correctly after the fifth video.
Download VMware Workstation Pro for Windows and VMware Fusion for Mac, following a step-by-step guide. Prepare Ubuntu Desktop and Ubuntu Server for on-premises environments.
Deploy Ubuntu Desktop 22.04 in VMware with a minimal install, use a generalized login, update and upgrade repositories, and leverage snapshots and clones to manage multiple VMs.
Deploy Ubuntu server on a VM to run a private edge router on premises, use Ubuntu 22.04, install OpenSSH, snapshot setup, and prepare cloud environment for OpenZiti and web app.
Deploy a cloud environment in Azure Central US by creating a VNet and resource group, launching web and private edge router VMs, and testing OpenZiti components.
Set up virtual networks in Central India and East US, deploy and configure VMs, and prepare OpenZiti lab environments for OpenCV workloads.
Download and install the ZTE client for Windows from the provided link, run the executable, and optionally use M remoting to manage VM SSH sessions to Azure resources.
Change dynamic IPs to static across Azure and VMware environments. Learn to configure private IPs, gateways, and DNS using Netplan and Openvswitch.
Install the OpenCV controller on Ubuntu, open required Azure ports to manage the control and data planes, install necessary packages, and set up the ZAC web UI.
Install and register the on-prem private router via auto enroll, then deploy a public router and register it with the console using a JWT enrollment.
Get an overview of the zt console: dashboard, identities and routers with automatic creation on controller authentication, sessions and service policies, plus zt tunneler downloads and documentation.
Configure a zero trust network access service for scenario 1 by disabling traversal on private routers, creating an identity, and defining intercept and host settings for the Azure web app.
Define dial and bind policies to authorize on-prem edge routers and remote PCs to access an Azure web service, validate connectivity with nginx.
Learn how router policies auto-create access for identities to public and private routers, and how attributes group routers to enable resilient traffic across the ZTE overlay.
Establish zero trust host-based access from a remote PC to an on-premises PC, without involving the private edge router, by using a Linux ZT tunneler and OpenSSH on port 22.
Explore a hands-on lab to create and validate scenario three in zero trust network access with OpenZiti, configuring ssh service, routes, and edge routers for secure on-premises access.
Explore OpenZiti's open network model by examining edge router links, latency analysis, and circuits, and learn how traffic shifts along secure channels to connected services.
Discover how smart routing uses latency data to select optimal paths between on-prem and Azure edge routers. See failover redirect traffic to an alternative path, illustrating the OpenZiti zero-trust overlay.
Reflect on what we have accomplished together, express gratitude for your dedication and engagement, and commit to using your feedback to improve future courses.
Unlock the power of Zero Trust Network Access (ZTNA) and learn how to implement a modern, secure network architecture using OpenZiti in this comprehensive, hands-on lab course. This course is perfect for IT professionals, network administrators, and cybersecurity enthusiasts seeking to deepen their understanding of Zero Trust principles and how they can be applied in real-world environments.
Zero Trust is a security model that assumes no entity, whether inside or outside the network, should be trusted by default. This approach is vital in today’s threat landscape, where traditional perimeter defenses no longer provide adequate protection. With OpenZiti, an open-source, cloud-native platform, you will learn to build secure, scalable, and flexible network access solutions that eliminate the need for traditional VPNs, allowing you to enforce strict, identity-based access policies.
This course provides not only the theoretical knowledge behind Zero Trust but also deep, practical insights into how to implement and maintain ZTNA using OpenZiti. You will leave with a hands-on understanding of how to secure modern IT environments against increasingly sophisticated threats and how to ensure your organization’s data, resources, and applications are protected at all times.
By the end of the course, you will be proficient in applying Zero Trust security principles using OpenZiti and will have the skills to enhance network security, simplify access management, and reduce the risks associated with unauthorized access. Whether you're looking to implement a zero-trust strategy for your organization or advance your cybersecurity expertise, this course will equip you with the tools and knowledge to succeed