{"id":48428,"date":"2022-09-13T22:33:00","date_gmt":"2022-09-13T22:33:00","guid":{"rendered":"https:\/\/www.networkworld.com\/article\/3673316\/software-defined-perimeter-what-it-is-and-how-it-works.html#tk.rss_security"},"modified":"2022-09-13T22:33:00","modified_gmt":"2022-09-13T22:33:00","slug":"software-defined-perimeter-what-it-is-and-how-it-works","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/","title":{"rendered":"Software-defined perimeter: What it is and how it works"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/images.idgesg.net\/images\/article\/2020\/07\/access_control_setting_on_virtual_display_authentication_privileges_by_putilich_gettyimages-1215246629_cso_nw_2400x1600-100852996-large.jpg?auto=webp&amp;quality=85,70\" class=\"ff-og-image-inserted\"><\/div>\n<p>A growing number of organizations are drawing an invisible line around their internet-connected resources in an effort to keep attackers at bay. Called software-defined perimeter (SDP), it is based on the relatively simple idea of throwing a virtual barrier around servers, routers, printers, and other enterprise network components.<\/p>\n<p>The goal of SDP is to protect networks behind a flexible, software-based perimeter. &#8220;Advantages include stronger security and greater flexibility and consistency,&#8221; says Ron Howell, principal <a href=\"https:\/\/www.networkworld.com\/article\/3031279\/sd-wan-what-it-is-and-why-you-ll-use-it-one-day.html\">SD-WAN<\/a> and <a href=\"https:\/\/www.networkworld.com\/article\/3574014\/what-is-sase-a-cloud-service-that-marries-sd-wan-with-security.html\">SASE<\/a> architect at IT and business consulting firm Capgemini Americas.<\/p>\n<p>It can address security challenges that have become more complex with the advent of applications built out of microservices that may be housed on more than one server rather than traditional, monolithic apps that generally resided on a dedicated server. &#8220;More recently, applications have been further modularized\u2014they are now composed of multiple workload types and microservices in the organization\u2019s data center or the public cloud,\u201d says Chad Skipper, global security technologist for VMware.<\/p>\n<h2>What is an SDP?<\/h2>\n<p>The SDP framework obfuscates servers or nodes, typically on an internal network, says Chalan Aras, managing director, cyber and strategic risk, at business advisory firm Deloitte. &#8220;SDP uses identity and other substantiation methods to permit visibility and connectivity to network nodes or servers on a least-privilege or need-to-access basis.&#8221;<\/p>\n<p>An SDP is specifically designed to prevent infrastructure elements from being viewed externally. Hardware, such as routers, servers, printers, and virtually anything else connected to the enterprise network that are also linked to the internet are hidden from all unauthenticated and unauthorized users, regardless of whether the infrastructure is in the cloud or on-premises. &#8220;This keeps illegitimate users from accessing the network itself by authenticating first and allowing access second,&#8221; says John Henley, principal consultant, cybersecurity, with technology research advisory firm ISG. &#8220;SDP not only authenticates the user, but also the device being used.<\/p>\n<h2>Benefits of SDPs<\/h2>\n<p>When compared with traditional fixed-perimeter approaches such as <a href=\"https:\/\/www.networkworld.com\/article\/3230457\/what-is-a-firewall-perimeter-stateful-inspection-next-generation.html\">firewalls<\/a>, SDP provides greatly enhanced security. Because SDPs automatically limit authenticated users\u2019 access to narrowly defined network segments, the rest of the network is protected should an authorized identity be compromised by an attacker. &#8220;This also offers protection against lateral attacks, since even if an attacker gained access, they would not be able to scan to locate other services,&#8221; Skipper says.<\/p>\n<aside class=\"nativo-promo nativo-promo-1 smartphone\" id> <\/aside>\n<p>SDP&#8217;s central benefit is simple: creating a higher level of network protection. &#8220;SDP has been instrumental in protecting enterprises against many different attack vectors, including <a href=\"https:\/\/www.csoonline.com\/article\/3563352\/brute-force-attacks-explained-and-why-they-are-on-the-rise.htmlhttps:\/\/www.csoonline.com\/article\/3648530\/ddos-attacks-definition-examples-and-techniques.html\">denial-of-service<\/a>, <a href=\"https:\/\/www.csoonline.com\/article\/3563352\/brute-force-attacks-explained-and-why-they-are-on-the-rise.html\">brute force<\/a>, credential theft, <a href=\"https:\/\/www.csoonline.com\/article\/3340117\/man-in-the-middle-attack-definition-and-examples.html\">man-in-the-middle<\/a>, server exploitation, and session hijacking,&#8221; Henley says. Other SDP benefits include strengthened and simplified access controls, reduced attack surfaces, simplified policy management, and a generally improved end-user experience.<\/p>\n<p>Since SDP can be dynamically rconfigured, it&#8217;s well suited to protect rapidly changing environments such as enterprise users accessing applications, or application environments with many micro-services that are spawned, scaled, or terminated on a real-time basis, Aras says.<\/p>\n<aside class=\"nativo-promo nativo-promo-1 tablet desktop\" id> <\/aside>\n<h2>How an SDP works<\/h2>\n<p>An SDP validates users and apps by authenticating them before it connects them to granularly limited portions of the network. This <a href=\"https:\/\/www.networkworld.com\/article\/3247672\/what-is-microsegmentation-how-getting-granular-improves-network-security.html\">microsegmentation<\/a>, created by remapping <a href=\"https:\/\/www.networkworld.com\/article\/3268449\/what-is-dns-and-how-does-it-work.html\">DNS<\/a> and <a href=\"https:\/\/www.networkworld.com\/article\/3588315\/what-is-an-ip-address-and-what-is-your-ip-address.html\">IP address<\/a> spaces, provides authorized users with the access they need while denying them access to resources they don\u2019t require. This essentially creates individual networks, each with a limited number of nodes so if bad actors do manage to gain access, the damage they cause can be confined.<\/p>\n<p>Central to SDP architecture is the controller, software that facilitates connecting users and devices that are seeking access (initiating hosts) with the resources they seek, such as apps and servers (accepting hosts). The controller authenticates the initiating host and determines the list of accepting hosts it is permitted to connect with. The controller instructs all the authorized accepting hosts to accept communications from the initiating host and shares the list with the initiating host. The initiating hosts can then create direct<a href=\"https:\/\/www.networkworld.com\/article\/3268744\/understanding-virtual-private-networks-and-why-vpns-are-important-to-sd-wan.html\"> VPN<\/a> connections with the accepting hosts.<\/p>\n<p>In some cases, the accepting host is a gateway that acts as a proxy between the initiating host and multiple resources it seeks to connect with. In other cases, an SDP can be set up between two servers that need to communicate as with modern applications built around microservices.<\/p>\n<p>Connectors and proxies, terms often used interchangeably, may sit in front of servers to gate access to them. They connect two network domains together and perform networking functions such as routing, network-address translation, and load balancing to direct traffic from one user or application to another, Arras says.<\/p>\n<aside class=\"nativo-promo nativo-promo-2 tablet desktop smartphone\" id> <\/aside>\n<p>In micro-service contexts, the proxy may be&nbsp;integrated into the micro-service fabric, such as in the case of the envoy&nbsp;proxy, an&nbsp;open-source edge&nbsp;proxy used in micro-services.&nbsp;In an&nbsp;Istio&nbsp;service mesh, for example, the envoy proxy can be used&nbsp;to connect micro-services so that mini-apps can securely communicate with each&nbsp;other in an open-source service mesh that layers transparently onto&nbsp;existing&nbsp;distributed applications, Aras says.<\/p>\n<h2>Zero Trust Network Access<strong><br \/><\/strong><\/h2>\n<p>Because of its strict authentication and tightly restricted network access, SDP is a vital part of <a href=\"https:\/\/www.networkworld.com\/article\/3663011\/who-is-selling-zero-trust-network-access-ztna-and-what-do-you-get.html\">Zero Trust Network Access (ZTNA)<\/a>, which is based on the premise that no device is ever really secure. &#8220;There&#8217;s no safe perimeter anymore due to workforce changes, microservices-based applications that can scatter components virtually anywhere, and the increasingly collaborative nature of business processes,&#8221; Skipper says, &#8220;There is no device that&#8217;s safe: no smartphone, no desktop\u2014period.&#8221;<\/p>\n<p>Addressing ZTNA requires tightly controlled network access and limited authorization, and <a href=\"https:\/\/www.networkworld.com\/article\/3639030\/software-defined-perimeter-is-a-good-place-to-start-a-rollout-of-zero-trust-network-access.html\">SDP is a good place to start<\/a>. &#8220;SDP helps users to properly authenticate before access is provided, and only to applications to which those users have been granted access,&#8221; Henley says.<\/p>\n<p>Henley estimates that there over 20 vendors currently offering SDP products, including Akamai (Enterprise Application Access),, Cisco (Duo Beyond), Ivanti (Ivanti Neurons for Secure Access), McAfee (MVISION Private Access), Netmotion (NetMotion SDP), Verizon (Verizon Software Defined Perimeter), and Versa (Versa Secure Access Client).<\/p>\n<aside class=\"nativo-promo nativo-promo-3 tablet desktop smartphone\" id> <\/aside>\n<p>Deploying SDP also doesn&#8217;t free enterprises from the responsibility of maintaining existing security practices. &#8220;No matter which security technologies your organization implements, or what it may be called, knowing what your important data is, and where it&#8217;s located, is the key for knowing how to protect it,&#8221; Jaworski says.<\/p>\n<p>Remember, too, that deploying SDP is not a once-and-done deal. &#8220;It&#8217;s important that organizations actively monitor and upgrade SDP software as required,&#8221; Jaworski advises. &#8220;In addition, tests should be conducted to ensure the software is not leaking and permitting access to the protected resources.&#8221;<\/p>\n<div class=\"end-note\"> <!-- blx4 #2005 blox4.html --> <\/p>\n<div id class=\"blx blxParticleendnote blxM2005 blox4_html blxC23909\">Join the Network World communities on <a href=\"https:\/\/www.facebook.com\/NetworkWorld\/\" target=\"_blank\" rel=\"noopener\">Facebook<\/a> and <a href=\"https:\/\/www.linkedin.com\/company\/network-world\" target=\"_blank\" rel=\"noopener\">LinkedIn<\/a> to comment on topics that are top of mind. <\/div>\n<\/p><\/div>\n<p> READ MORE <a href=\"https:\/\/www.networkworld.com\/article\/3673316\/software-defined-perimeter-what-it-is-and-how-it-works.html#tk.rss_security\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\nA growing number of organizations are drawing an invisible line around their internet-connected resources in an effort to keep attackers at bay. Called software-defined perimeter (SDP), it is based on the relatively simple idea of throwing a virtual barrier around servers, routers, printers, and other enterprise network components.The goal of SDP is to protect networks behind a flexible, software-based perimeter. &#8220;Advantages include stronger security and greater flexibility and consistency,&#8221; says Ron Howell, principal SD-WAN and SASE architect at IT and business consulting firm Capgemini Americas.To read this article in full, please click here READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":48429,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[738],"tags":[1061],"class_list":["post-48428","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-networkworld","tag-network-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2022-09-13T22:33:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/images.idgesg.net\/images\/article\/2020\/07\/access_control_setting_on_virtual_display_authentication_privileges_by_putilich_gettyimages-1215246629_cso_nw_2400x1600-100852996-large.jpg?auto=webp&amp;quality=85,70\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Software-defined perimeter: What it is and how it works\",\"datePublished\":\"2022-09-13T22:33:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/\"},\"wordCount\":1109,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/09\\\/software-defined-perimeter-what-it-is-and-how-it-works.jpg\",\"keywords\":[\"Network Security\"],\"articleSection\":[\"Networkworld\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/\",\"name\":\"Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/09\\\/software-defined-perimeter-what-it-is-and-how-it-works.jpg\",\"datePublished\":\"2022-09-13T22:33:00+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/09\\\/software-defined-perimeter-what-it-is-and-how-it-works.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/09\\\/software-defined-perimeter-what-it-is-and-how-it-works.jpg\",\"width\":150,\"height\":100},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/software-defined-perimeter-what-it-is-and-how-it-works\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Network Security\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/network-security\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Software-defined perimeter: What it is and how it works\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/","og_locale":"en_US","og_type":"article","og_title":"Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2022-09-13T22:33:00+00:00","og_image":[{"url":"https:\/\/images.idgesg.net\/images\/article\/2020\/07\/access_control_setting_on_virtual_display_authentication_privileges_by_putilich_gettyimages-1215246629_cso_nw_2400x1600-100852996-large.jpg?auto=webp&amp;quality=85,70","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Software-defined perimeter: What it is and how it works","datePublished":"2022-09-13T22:33:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/"},"wordCount":1109,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2022\/09\/software-defined-perimeter-what-it-is-and-how-it-works.jpg","keywords":["Network Security"],"articleSection":["Networkworld"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/","url":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/","name":"Software-defined perimeter: What it is and how it works 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2022\/09\/software-defined-perimeter-what-it-is-and-how-it-works.jpg","datePublished":"2022-09-13T22:33:00+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2022\/09\/software-defined-perimeter-what-it-is-and-how-it-works.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2022\/09\/software-defined-perimeter-what-it-is-and-how-it-works.jpg","width":150,"height":100},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/software-defined-perimeter-what-it-is-and-how-it-works\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Network Security","item":"https:\/\/www.threatshub.org\/blog\/tag\/network-security\/"},{"@type":"ListItem","position":3,"name":"Software-defined perimeter: What it is and how it works"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/48428","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=48428"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/48428\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/48429"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=48428"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=48428"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=48428"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}