Hacker News new | ask | show | jobs
by inyourtenement 1441 days ago
I get this, but I don’t get why that means we should do away with VPNs, etc. Isn’t “in my private network” an additional piece of information that can be used to help authenticate a client?
2 comments

Sure you can still have a VPN. It’s just not used for security because that’s a terrible idea.

We’re talking about situations where you have some control over both sides. If you’re authenticating with some random embedded device, you’d likely use a VPN for security.

VPNs aren't necessarily "done away with" in the ZT model, in fact in many circumstances they would still be encouraged.