From the course: Zero Trust Architecture for Security Architects: From Network Design to Identity Integration

Unlock this course with a free trial

Join today to access over 24,900 courses taught by industry experts.

Policy decision and enforcement points (PDP/PEP)

Policy decision and enforcement points (PDP/PEP)

- [Instructor] Imagine trying to enter a high security building. You walk up to the door, swipe your badge, and the system instantly checks who you are, where you're coming from, and whether you're allowed in or not. There's a decision being made, and that decision is being enforced in real-time. In zero trust, this process is handled by two core components, policy decision point and policy enforcement point. Let's take a look. What are PDP and PEP are? Let's define them simply. The policy decision points decide if access should be allowed, whereas PEP executes that decision, allowing or denying that request. They work as a team to make access context-aware, dynamic, and secure by design are their features. PDP and PEP are the core of zero trust and software-defined parameter architectures, where they separate logic from enforcement so decisions stay intelligent and enforcements stay fast. How PDP and PEP work…

Contents