{"id":1215,"date":"2023-09-25T14:27:25","date_gmt":"2023-09-25T14:27:25","guid":{"rendered":"https:\/\/smart.zadig.cloud\/?post_type=feature&#038;p=1215"},"modified":"2023-11-17T10:30:57","modified_gmt":"2023-11-17T10:30:57","slug":"network-segmentation","status":"publish","type":"feature","link":"https:\/\/smart.zadig.cloud\/it\/features\/network-segmentation\/","title":{"rendered":"Network Segmentation"},"featured_media":1764,"template":"","meta":[],"acf":{"fast_description":"Network Segmentation is the architectural approach to organize the entire network into several smaller segments, each of them acts as an independent entity. It's the same concept you adopt when organize your employees into operational teams working on different topics and you want to enable communication rules between them based on your needs. Similarly, with Network Segmentation it's possible to control traffic flows between the smaller segments improving security and performance.","working_principles":[{"title":"Improve Network monitoring"},{"title":"Increase Network Security"},{"title":"Protect from harmful traffic spreading"},{"title":"Increase performance"}],"principles_excerpt":"Any organization, beyond the infrastructure complexity, needs to implement network segmentation. However, it's common to organize networks following a flat approach to reduces the time needed to set up the infrastructure. And what about network security? Flat network enables threats to spread across the entire network.","principles_full":"<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">With ZADIG Smart Network Segmentation is natively implemented. The gateway comes with six network port, each of the is dedicated to a different network segment:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">WAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network <\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">From the Remote plan up, smart working VPN feature is included in ZADIG Smart service. In this scenario road warrior clients network must be considered as an additional network segment.<\/p>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">Only two actions are required to use Network Segmentation functionality: connect the specific subnet to the port of the gateway designed to that logic function and adapt the segment's addressing scheme if necessary.<\/p>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">Traffic flow rules between segments are also natively implemented on the gateway.<\/p>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">LAN network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">nothing<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">Wi-Fi network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Nothing<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">IoT network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">In-house servers network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">nothing<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">DMZ network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><span style=\"font-weight: bold;\">Road Warrior clients network<\/span> is able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">LAN network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Wi-Fi network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">In-house servers network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Internet<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">IoT network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">DMZ network<\/span><\/li>\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">road warrior clients network<\/span><\/li>\r\n<\/ul>\r\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">..and is not able to communicate with:<\/p>\r\n\r\n<ul style=\"direction: ltr; unicode-bidi: embed; margin-top: 0in; margin-bottom: 0in;\" type=\"disc\">\r\n \t<li style=\"margin-top: 0; margin-bottom: 0; vertical-align: middle;\"><span style=\"font-family: Calibri; font-size: 11.0pt;\">Nothing<\/span><\/li>\r\n<\/ul>","risks_desc":"Configuring the infrastructure without Network Segmentation exposes you to a wide variety of risks. ","risks_items":[{"title":"Threats spreading ","content":"A flat network allows threats to move literally across the entire network. Suppose that a self replicant malware infects an IoT device, without segmentation that malware could spread across the network, infecting all the other devices including the devices of employees."},{"title":"Hacking attempts","content":"A flat network makes it easier to execute an attack. Suppose that a company has several exposed public services and no DMZ implemented, any attack on this exposed servers would give to the attacker the complete access to the network to make other attempts."},{"title":" Lack of privacy","content":"Without Network Segmentation each device on the network can access any other device. In this way there is the possibility of accessing unauthorised resources with a consequent lack of privacy."}],"why_us_title":"WE OFFER A NATIVELY IMPLEMENTED SOLUTION OF NETWORK SEGMENTATION SUITABLE FOR THE MAIN NEEDS OF THE ORGANIZATIONS","why_us_description":"including a preconfigured infrastructure that is completely and easily integrable with your current configuration."},"_links":{"self":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/feature\/1215"}],"collection":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/feature"}],"about":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/types\/feature"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/media\/1764"}],"wp:attachment":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/media?parent=1215"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}