How to Optimize a Microsegmentation Architecture with Elisity

This Elisity presentation at Network Field Day 36 focuses on how Elisity’s microsegmentation architecture leverages a cloud-native distributed control plane that separates policy management from enforcement. At its core, the system utilizes a centralized policy management platform that integrates with existing identity providers and maintains the Elisity IdentityGraph—a comprehensive mapping of all network assets, their relationships, and behavior patterns. This identity-centric approach moves beyond traditional IP-based controls to enable context-aware policy enforcement at the network edge. The implementation relies on Elisity Virtual Edge controller(s) that transform existing access-layer switches into policy enforcement points. These controllers communicate with the Elisity Cloud Control center via secure channels, enabling real-time policy updates without requiring dedicated hardware. For manufacturing environments, this architecture enables granular control over industrial control systems and OT devices while maintaining IEC 62443 compliance. In healthcare settings, it facilitates 405(d) HICP compliance while protecting sensitive medical devices and clinical systems. Key technical components include the Elisity identity-based Dynamic Policy Engine that leverages machine learning for asset discovery and classification, graphical policy visualization matrices for traffic flow analysis, and virtual edge nodes that enforce policies using native switch functionality. The system continuously monitors east-west and north-south traffic patterns, providing real-time telemetry data for behavior analysis and policy refinement. This architecture enables security teams to implement zero trust principles at scale, with the ability to microsegment networks down to individual workloads while maintaining the performance requirements of critical manufacturing and healthcare operations. The platform's ability to learn from traffic patterns and automatically adjust policies based on identity and context makes it particularly effective in environments where traditional agent-based solutions are impractical. Presented by Dana Yanch, Director of TME, and Piotr Kupisiewicz, CTO. Recorded live at Networking Field Day 36 in San Jose, CA on November 6, 2024. Watch the entire presentation at https://techfieldday.com/appearance/e... or visit https://techfieldday.com/event/nfd36/ or https://www.Elisity.com/ for more information.

Elisity Microsegmentation Platform Demo – Clinical Healthcare Use Cases
▶︎

Elisity Microsegmentation Platform Demo – Clinical Healthcare Use Cases

Keynote | Zack Schaefer Sr. Systems Engineer at Elisity
▶︎

Keynote | Zack Schaefer Sr. Systems Engineer at Elisity

Google & AWS Veteran: What Top Tier Software Architects Actually Do
▶︎

Google & AWS Veteran: What Top Tier Software Architects Actually Do

Cisco AgenticOps Powered by Cloud Control
▶︎

Cisco AgenticOps Powered by Cloud Control

Implementing Microsoft Entra Private Access for 1000+ Users: A Real-World Journey - Gerjon & Tristan
▶︎

Implementing Microsoft Entra Private Access for 1000+ Users: A Real-World Journey - Gerjon & Tristan

AWS Explained: The Most Important AWS Services To Know
▶︎

AWS Explained: The Most Important AWS Services To Know

Something is jamming GPS over Europe. Here's what we found
▶︎

Something is jamming GPS over Europe. Here's what we found

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan
▶︎

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan

Cisco Isovalent Private Networks over EVPN/VXLAN
▶︎

Cisco Isovalent Private Networks over EVPN/VXLAN

Tuscan Cottage Wildflowers Oil Painting | 4K Vintage Wallpaper Art Screensaver | Vintage Frames
▶︎

Tuscan Cottage Wildflowers Oil Painting | 4K Vintage Wallpaper Art Screensaver | Vintage Frames

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit
▶︎

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit

Kubernetes Zero to Hero: The Complete Beginner’s Guide (2025 Edition)
▶︎

Kubernetes Zero to Hero: The Complete Beginner’s Guide (2025 Edition)

System Design Concepts Course and Interview Prep
▶︎

System Design Concepts Course and Interview Prep

Pork Shot! A West Tunnel Exclusive Mini-Game - Hermitcraft 11 | Ep 24
▶︎

Pork Shot! A West Tunnel Exclusive Mini-Game - Hermitcraft 11 | Ep 24

Frequency Of God 963 Hz ✨ Attract Miracles, Divine Blessings & Deep Inner Peace In Your Life
▶︎

Frequency Of God 963 Hz ✨ Attract Miracles, Divine Blessings & Deep Inner Peace In Your Life

Storchennest Live Webcam in Bad Salzungen, Thüringen
▶︎

Storchennest Live Webcam in Bad Salzungen, Thüringen

Ex-Google Recruiter Explains Why "Lying" Gets You Hired
▶︎

Ex-Google Recruiter Explains Why "Lying" Gets You Hired

11-06-26 Sukhmani Sahib Full Path | ਸੁਖਮਨੀ ਸਾਹਿਬ ਪਾਠ | Sukhmani Sahib Da Path | Fast Sukhmani
▶︎

11-06-26 Sukhmani Sahib Full Path | ਸੁਖਮਨੀ ਸਾਹਿਬ ਪਾਠ | Sukhmani Sahib Da Path | Fast Sukhmani

Kubernetes Crash Course for Absolute Beginners [NEW]
▶︎

Kubernetes Crash Course for Absolute Beginners [NEW]

God Says:"STOP HERE — LISTEN AND HEAR ME SPEAK"/God Message Now/God Message
▶︎

God Says:"STOP HERE — LISTEN AND HEAR ME SPEAK"/God Message Now/God Message