Lộ trình liên quan Related learning track

Cloudflare One Cloudflare One

Học lộ trình này Study this track

Bảo mật toàn doanh nghiệp (Zero Trust) Company-wide security (Zero Trust)

Tổ chức cần bảo vệ nhân viên, thiết bị, SaaS, email và dữ liệu — không chỉ một ứng dụng public. Organizations must protect employees, devices, SaaS, email, and data — not just one public application.

Tài liệu Cloudflare (use case) → Official Cloudflare use case docs →

Kiến trúc gợi ý Suggested architecture

Users/devices → Cloudflare One (Access, Gateway, CASB, DLP, Email) → Apps & Internet Users/devices → Cloudflare One (Access, Gateway, CASB, DLP, Email) → Apps & Internet

Sơ đồ tham chiếu (Cloudflare Docs) Reference diagrams (Cloudflare Docs)

Figure 1: Only traffic that has passed the Cloudflare network and relevant policies is authorized to access the SaaS application.

Secure access to SaaS applications with SASE Secure access to SaaS applications with SASE

Zero Trust cho SaaS: policy theo identity, device posture và network context qua Cloudflare One. Cloudflare's SASE platform offers the ability to bring a more Zero Trust orientated approach to securing SaaS applications. Centralized policies, based on device posture, identity attributes and granular network location can be applied across one or many Saas applications.

Thuật ngữ: Concepts: SASE · Gateway · Access · Device posture · SaaS

Sơ đồ chính thức ↗ Official diagram ↗ · SASE / Cloudflare One Secure Access Service Edge (SASE)

Figure 1: DNS requests can be forwarded to Cloudflare via a variety of different methods.

Protective DNS for governments Protective DNS for governments

Learn how to use Cloudflare Gateway as a Protective DNS service for governments. Learn how to use Cloudflare Gateway as a Protective DNS service for governments.

Sơ đồ chính thức ↗ Official diagram ↗ · SASE / Cloudflare One Secure Access Service Edge (SASE)

Controls & stack Controls & stack

  • ZTNA / Access cho app nội bộ & SaaS ZTNA / Access for internal and SaaS apps
  • Secure Web Gateway + DNS filtering Secure Web Gateway + DNS filtering
  • CASB + DLP cho data exfiltration CASB + DLP for data exfiltration
  • Email security chống phishing Email security against phishing
  • Device posture qua WARP/MDM Device posture via WARP/MDM

Tình huống khác (cùng lộ trình) Other scenarios (same track)

← Tất cả tình huống lộ trình này ← All scenarios in this track · Ba nhóm tình huống All three groups

Next step Next step

Tiếp tục hành trình học của bạn. Continue your learning journey.