O
3
c/devsecopsthe_robinthe_robin1mo agoOG Member

Burned $2,400 on a 'zero trust' vendor that just wrapped our VPN in marketing

We switched to them after a CTO pitch in Chicago and spent three months migrating, only to find the gateway was still just a reverse proxy with a dashboard, so has anyone else had a vendor sell you a rebranded tool and how do you vet for that before signing?
1 comments

Log in to join the discussion

Log In
1 Comment
alicec86
alicec861mo ago
Honestly, the quickest way to vet this stuff is to ask for a live demo where you actually run a packet capture on your own test traffic. If they flinch or give you a slide deck instead of a terminal window, that tells you everything. Tbh, most of these "zero trust" pitches are just old tech with a new name slapped on, and the migration cost is where they make their money back. Next time, demand to see the actual config files before you sign, not just their pretty dashboard. Ngl, I've been burned the same way, and now I always ask one dumb question: "Show me where the policy engine lives, on my box or yours?" If they can't answer that simply, walk away.
4