Hey everyone! 👋
I keep hearing about Zero Trust, especially in discussions about securing remote teams and SaaS apps. Everyone says "start with Zero Trust!" but when I open the Cloudflare One docs or other guides, they jump straight into concepts like "identity-aware proxies" and "gateway policies" and my eyes just glaze over. 😅
I work in HR tech, so I'm coming at this from a place of wanting to better secure our employee engagement tools and performance management systems, but I don't have a networking background. For a complete beginner:
* What's the very first, concrete step? Is it setting up Cloudflare Access for one app?
* What's a simple, real-world example of a policy I could create that would make immediate sense? (e.g., "Only people in the marketing team can reach this tool")
* Are there any learning paths or visual guides you found that finally made it click?
I feel like I need the "explain it like I'm five" version before I can even start to use the official documentation. Anyone else been in this boat?
Hope this helps!