Hacker News new | ask | show | jobs
by fortyfivan 3068 days ago
I'm from ScaleFT, thanks for the mention. True that our original focus was in SSH/RDP access, however we've recently introduced Web access as well.

https://www.scaleft.com/blog/how-to-deploy-a-beyondcorp-styl...

I agree with many commenters that it appears transformative, but that's only through the lens of Google. Centralized access controls at Layer 7 through a proxy service that can authenticate and authorize requests, while brokering encrypted sessions isn't that out of reach. Our goal at ScaleFT is to offer as much as a service as we can.

Where things do get tricky, though, is with the access policies and device attestation in a BYOD environment. Admittedly, we have work to do in this regard, but it may not require a full MDM layer. Really, you only need to query device state at a given time to make an authZ decision.

Love to see BeyondCorp get more coverage, and I hope to see further adoption outside of Google.