Notifications
Clear all
Twingate Reviews
1
Posts
1
Users
0
Reactions
3
Views
Topic starter
14/07/2026 2:36 pm
We're onboarding several external dev shops and contractors. Need to lock down their access to specific internal apps.
Considering two paths with Twingate:
* **Separate Remote Network:** Create a whole new network (e.g., "Vendors"). Pro: Full isolation, clear billing separation. Con: More admin overhead, another network to manage.
* **Just a Resource Group:** Add them to the main network but restrict them to a group with only the necessary resources. Pro: Simpler, one network. Con: They're in your main user list, less logical separation.
Which way scales better for 10+ vendors? I'm leaning towards the group method to avoid network sprawl, but worried about visibility and cleanup later.
What's your actual setup and the trade-off you've hit?