Excuse me Mr. SASE vendor?

This is the sort of thing you can’t make up.

Me
“Ok. So at the edge between the premises LAN and WAN, we would need to rely on some other legacy device?”
Mr. SASE Vendor
Yeah you would want something at the edge to do networking 101, distribute IPs but it doesn’t really need to be a fully functional firewall since you have a firewall in the cloud

So what about all the other premises devices? Am I just supposed to use a non “fully functional firewall” to allow attacks in and out of my network? What about when something that doesn’t have your cloud-firewall agent is compromised? How will you protect the network from further attacks, exfiltration, or otherwise?

The simple answer is this. Some of these SASE vendors are half-baked security wannabes that claim to have security at the heart of the system. When, in fact, they have no clear understanding of the real threats posed to existing premises networks; legacy or not.

So to you Mr. SASE Vendor – good day.