Resources

These are the required resources if you are onboarding using Secure Hybrid Access:

These are two required tasks to set up resources for Secure Application Access:

These resources are optional if you are onboarding using Secure Network Access:
  • RadSec Proxy Location: A site can contain none, one, or more RadSec proxies. The same site is global and can be used for other places in UZTNA to define boundaries
  • Deploy RadSec Proxy:
    • For network devices (switches/AP) that cannot do RadSec, the RadSec Proxy secures RADIUS traffic into a secure Transport Layer Security (TLS) tunnel
    • The RadSec Proxy server forwards an auth-request to the Radius server and another auth-request back to the switch or access point
    • The switch or access point does not support the RADSEC protocol by the secure TLS tunnel