NIST 800-207 outlines a framework where trust is never granted implicitly based on physical or network location.
NIST Special Publication 800-207 is generally considered the most widely respected and authoritative definition of Zero Trust. It fundamentally redefines enterprise security by mandating a shift from location-based trust to identity-centric, resource-level protection. NetFoundry delivers a programmable Zero Trust Overlay Network (ZTON) built on the open-source OpenZiti project. By abstracting the network from the underlying infrastructure and embedding security directly into the application layer, NetFoundry enables organizations to achieve a “dark network” posture. This whitepaper details how NetFoundry’s architecture implements and exceeds the core tenets of NIST 800-207, providing a cryptographic, deny-all-by-default environment that neutralizes lateral movement and eliminates inbound attack vectors.