| CPC H04L 63/0272 (2013.01) [H04L 63/0263 (2013.01); H04L 63/029 (2013.01); H04L 63/108 (2013.01)] | 21 Claims |

|
1. A method comprising:
generating a virtual network interface having a namespace with a plurality of names, wherein a first name of the namespace is assigned to a client device;
assigning a second name of the namespace to a resource accessible to the client device through a zero trust network environment, wherein the resource is deployed in a secure network environment;
configuring the client device to communicate only through the virtual network interface;
inspecting network traffic received from the client device;
determining a destination of the network traffic;
sending the network traffic to the destination in response to determining that the network traffic is allowable based on a policy of the zero trust network environment; and
altering a packet of the network traffic so that a response from the resource is directed to the zero trust network environment instead of the client device.
|