HPE Zero Trust Inline Microsegmentation with HPE Mist @Techfieldday
HPE Zero Trust Inline Microsegmentation with HPE Mist  @Techfieldday
Uploaded May 2026 | Updated September 2026, 1 week ago
Abhi Shamsundar, a member of the product team at HPE, presents the technical implementation of zero-trust micro-segmentation, focusing on how to enforce security policies closest to the source without requiring a massive network re-architecture. The session addresses a critical challenge in modern networking: preventing the lateral movement of threats, such as ransomware, within a broadcast domain. While traditional micro-segmentation often relies on VXLAN headers and EVPN-VXLAN architectures, which are ideal for large greenfield campuses, they are a hard sell for existing branch, retail, and distributed networks. Shamsundar introduces an inline zero-trust solution that allows for intra-VLAN and inter-VLAN segmentation while leaving existing Layer 2 and Layer 3 boundaries untouched, effectively bypassing the need for complex routing at the access layer.

The core of this strategy relies on Group-Based Policies (GBP) and centralized management via the Mist dashboard. When a device joins the network, it authenticates with a RADIUS server and receives a tag, which is then communicated to neighboring switches and access points. This allows for granular enforcement where communication can be denied not just at a basic "allow or deny" level, but down to specific Layer 4 ports and protocols. During a live demonstration, Shamsundar showcases a wired and wireless client initially communicating and streaming video; by updating the policy on the dashboard, the traffic is instantly halted at the access layer. This system provides a seamless translation of security intent between wired and wireless domains, ensuring consistent protection across the entire infrastructure.

A significant benefit of this approach is the deep visibility it provides to administrators, including hit counters and timeline functions that track policy interactions over seven days. While the speaker clarifies that the current solution supports specific hardware like the Juniper Mist 4100 and 4400 switches, he notes that support for Aruba switches is on the roadmap. The presentation concludes by reinforcing the message that true zero trust is a function of strong segmentation. By enabling enforcement at the edge of the network without requiring a total VXLAN overhaul, HPE provides organizations with a pragmatic path to secure their infrastructure against sophisticated lateral threats while maintaining their current operational models.

Presented by Abhi Shamsundar, Sr. Director of Product Management. Recorded live at Mobility Field Day 14 in San Jose, CA on May 6, 2026. Watch the entire presentation at techfieldday.com/appearance/hpe-presents-at-mobility-field-day-14 or visit TechFieldDay.com/event/mfd14 or hpe.com/us/en/networking.html for more information.
HPE Zero Trust Inline Microsegmentation with HPE MistHow Ubiquiti Fixes Legacy Wi-Fi Congestion with Wi-Fi 7 BridgingEliminate Risks with ForwardSelector AIOps for Full-Stack ObservabilityFortinet AI at the Edge - Turning Connectivity into Insight and ActionNile The Mobility Security GapReal-Time Data Intelligence with CTERAFueling Autonomous, Agentic AI and Beyond with HPE ProLiant ComputeExtending Secure Networking to Wireless with CiscoThe Intelligent Data Platform activating your unstructured data for AI with CTERAThe Human Imperative, Tokenomics, and the Reality of AI - AI Field Day 8 Delegate RoundtableFuturum Research Cybersecurity and Resilience Practice Overview
Tech Field Day |

HPE Zero Trust Inline Microsegmentation with HPE Mist

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER