← Back to context

Comment by ale42

2 years ago

> Of course the network would not use a VPN but MPLS or something.

So basically the company's devices are provisioned with specific (e)SIM cards that would make the traffic routed to the company's network by the telco directly? If I would be a network admin in a big company, I'm not sure I'd feel well with that, as the provisioning/management of SIM cards out of the company's control. It would also mean that a rogue employee of the telecom operator would be able to access the internal network of the company. Attack surface seems too big.

Yes, but remember companies often outsource everything. Our company stores all data on office 365. So Microsoft already has everything we care about.

And trusting the network is an old security model in this day and age (think Google beyondcorp). Trust should be on the endpoint not the network.