SASE · Networking · Security

SASE and network security, from the wire up.

A practitioner's knowledge base. It starts at the physical connectivity layer and works up through the SASE stack, with honest trade-offs and stories from the field instead of vendor marketing.

The stack, bottom to top

7 layers
  1. 01

    ConnectivityUnderlay / physical access

    The foundation: how sites and users physically connect to the network, and what each access type is really good (and bad) at.

    2 / 9
  2. 02

    SD-WAN & Network ArchitectureOverlay / routing / traffic management

    SD-WAN sits on top of the underlay. This is where routing behaviour, traffic steering and network design are defined.

    0 / 7
  3. 03

    FirewallEnforcement & segmentation

    Cloud-delivered, on-prem and hybrid firewalls, and why cloud-only does not fit every use case.

    0 / 8
  4. 04

    Network SecurityCloud-delivered security stack

    The SSE building blocks: ZTNA, SWG, CASB, DLP and friends.

    0 / 7
  5. 05

    OperationsRunning it day to day

    How the technologies in the stack are actually run: visibility, troubleshooting, change, incidents, suppliers and capacity.

    0 / 7
  6. 06

    Compliance & RegulationsFrameworks and how SASE maps to them

    NIST, ISO 27001, SOC 2, GDPR and industry regulations, and how SASE features map to them.

    0 / 3
  7. 07

    Cyber Security ConceptsPrinciples and threat landscape

    Core principles, the threat landscape, Zero Trust philosophy and security operations.

    0 / 5

Honest about trade-offs

Every topic covers what goes wrong as well as what works. Limits and pitfalls get as much space as the pitch.

From the field

Written by a sales engineer who sits in the design workshops. It reflects what happens in real deployments, not what the datasheet says.

Built from the ground up

Each layer builds on the one below it, so a security conversation always rests on the network underneath it.