{"id":108970,"date":"2022-12-30T09:23:44","date_gmt":"2022-12-30T08:23:44","guid":{"rendered":"https:\/\/www.avanet.com\/kb\/como-configurar-sophos-ztna-zero-trust-network-access\/"},"modified":"2024-02-02T16:24:34","modified_gmt":"2024-02-02T15:24:34","slug":"como-configurar-sophos-ztna-zero-trust-network-access","status":"publish","type":"kb","link":"https:\/\/www.avanet.com\/es\/kb\/como-configurar-sophos-ztna-zero-trust-network-access\/","title":{"rendered":"C\u00f3mo configurar Sophos ZTNA (Zero Trust Network Access)"},"content":{"rendered":"\n<p>Este art\u00edculo explica c\u00f3mo configurar Sophos Zero Trust Network Access, o ZTNA para abreviar.\nEsto le dar\u00e1 una idea de c\u00f3mo funciona el software. <\/p>\n\n<div class=\"wp-block-yoast-seo-table-of-contents yoast-table-of-contents\"><h2>\u00cdndice<\/h2><ul><li><a href=\"#h-voraussetzungen-fur-sophos-zero-trust\" data-level=\"2\">Requisitos previos para Sophos Zero Trust<\/a><\/li><li><a href=\"#h-sophos-central-ztna-aktivieren\" data-level=\"2\">Activar Sophos Central ZTNA<\/a><\/li><li><a href=\"#h-wildcard-zertifikat\" data-level=\"2\">Certificado comod\u00edn<\/a><\/li><li><a href=\"#h-ztna-einrichten\" data-level=\"2\">Configurar ZTNA<\/a><\/li><\/ul><\/div>\n\n<h2 class=\"wp-block-heading\" id=\"h-voraussetzungen-fur-sophos-zero-trust\">Requisitos previos para Sophos Zero Trust<\/h2>\n\n<ul class=\"wp-block-list\">\n<li>Cuenta de Sophos Central<a href=\"https:\/\/www.sophos.com\/de-de\/products\/sophos-central\/free-trial?id=0013000001EjyeY\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Sophos Central cree una cuenta de prueba gratuita de 30 d\u00edas deSophos Central<\/a>)<\/li>\n\n\n\n<li>Azure Active Directory con usuarios y grupos<\/li>\n\n\n\n<li>Entorno VMware ESXi, Microsoft Hyper-V o Amazon Cloud AWS para nuevas m\u00e1quinas virtuales<\/li>\n\n\n\n<li><span style=\"color: var(--ast-global-color-3); font-size: 1rem; background-color: var(--ast-global-color-5);\">Direcci\u00f3n IP fija para VM<\/span><\/li>\n\n\n\n<li>Certificado comod\u00edn<\/li>\n<\/ul>\n\n<h2 class=\"wp-block-heading\" id=\"h-sophos-central-ztna-aktivieren\">Activar Sophos Central ZTNA<\/h2>\n\n<p>Si a\u00fan no ha probado Zero Trust Network Access, le invitamos a hacerlo con una cuenta Central nueva o ya existente.<\/p>\n\n<figure class=\"wp-block-gallery has-nested-images columns-default is-cropped wp-block-gallery-1 is-layout-flex wp-block-gallery-is-layout-flex\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-scaled.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"2560\" height=\"1433\" data-id=\"80907\" src=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-scaled.jpg\" alt=\"\" class=\"wp-image-80907\" srcset=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-scaled.jpg 2560w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-scaled-64x36.jpg 64w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-300x168.jpg 300w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-1024x573.jpg 1024w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-768x430.jpg 768w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-1536x860.jpg 1536w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-2048x1147.jpg 2048w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-start-trial-600x336.jpg 600w\" sizes=\"auto, (max-width: 2560px) 100vw, 2560px\" \/><\/a><figcaption class=\"wp-element-caption\">Iniciar prueba de Sophos ZTNA<\/figcaption><\/figure>\n<\/figure>\n\n<h2 class=\"wp-block-heading\" id=\"h-wildcard-zertifikat\">Certificado comod\u00edn<\/h2>\n\n<p>Para ZTNA, necesitas un certificado comod\u00edn.\nRecomiendo usar un certificado que sea v\u00e1lido por m\u00e1s de 3 meses, como los certificados Let&#8217;s Encrypt.\nSin embargo, a menudo quieres probar la soluci\u00f3n ZTNA durante el periodo de prueba de 30 d\u00edas y Let&#8217;s Encrypt es una gran opci\u00f3n si a\u00fan no tienes un certificado comod\u00edn.  <\/p>\n\n<p>Si ya existe un certificado, perfecto.\nSi no, instrucciones: <a href=\"\">Crear certificado comod\u00edn Let&#8217;s Encrypt<\/a>. <\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-ztna-einrichten\">Configurar ZTNA<\/h2>\n\n<p>Para poder utilizar ZTNA, primero debes configurar las cinco cosas siguientes.<\/p>\n\n<ol class=\"wp-block-list\">\n<li>A\u00f1adir servicio de directorio: Azure AD Sync con Central para sincronizar usuarios y grupos.<\/li>\n\n\n\n<li>A\u00f1adir proveedores de identidad: Configura los proveedores de identidad necesarios para la autenticaci\u00f3n<\/li>\n\n\n\n<li>A\u00f1adir una pasarela: Crear una puerta de enlace virtual para cada ubicaci\u00f3n de red.<\/li>\n\n\n\n<li>A\u00f1adir pol\u00edtica: Establecer normas de acceso a los recursos<\/li>\n\n\n\n<li>A\u00f1adir recurso: Especifique los recursos y los grupos de usuarios que pueden acceder a los recursos.<\/li>\n<\/ol>\n\n<figure class=\"wp-block-gallery has-nested-images columns-default is-cropped wp-block-gallery-2 is-layout-flex wp-block-gallery-is-layout-flex\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-scaled.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"2560\" height=\"1433\" data-id=\"80927\" src=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-scaled.jpg\" alt=\"\" class=\"wp-image-80927\" srcset=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-scaled.jpg 2560w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-scaled-64x36.jpg 64w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-300x168.jpg 300w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-1024x573.jpg 1024w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-768x430.jpg 768w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-1536x860.jpg 1536w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-2048x1147.jpg 2048w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-setup-dashboard-600x336.jpg 600w\" sizes=\"auto, (max-width: 2560px) 100vw, 2560px\" \/><\/a><figcaption class=\"wp-element-caption\">Panel de Sophos ZTNA<\/figcaption><\/figure>\n<\/figure>\n\n<h3 class=\"wp-block-heading\">1. sincronizar usuarios (Configurar la sincronizaci\u00f3n de directorios)<\/h3>\n\n<p>No solo para ZTNA, sino para Central en general, es \u00fatil utilizar un servicio de directorio que sincronice usuarios y grupos con Central.\nEn el caso de ZTNA, sin embargo, se necesita Azure AD u Okta &#8211; una sincronizaci\u00f3n normal de Active Directory de Windows no es suficiente en este caso. <\/p>\n\n<p>Esta gu\u00eda explica c\u00f3mo cumplir este requisito: <a href=\"https:\/\/www.avanet.com\/kb\/sophos-central-azure-ad-hinzufugen\/\">A\u00f1adirSophos Central Azure AD<\/a><\/p>\n\n<h3 class=\"wp-block-heading\">2. a\u00f1adir proveedor de identidad (Add identitv provider)<\/h3>\n\n<p>Una vez que haya configurado Azure AD, puede introducir aqu\u00ed los datos correspondientes: ID de <strong>cliente<\/strong>, <strong>ID de inquilino<\/strong> y <strong>Secreto de cliente<\/strong>.<\/p>\n\n<figure class=\"wp-block-gallery has-nested-images columns-default is-cropped wp-block-gallery-3 is-layout-flex wp-block-gallery-is-layout-flex\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"1664\" height=\"1482\" data-id=\"99626\" src=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider.jpg\" alt=\"\" class=\"wp-image-99626\" srcset=\"https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider.jpg 1664w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-64x57.jpg 64w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-300x267.jpg 300w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-1024x912.jpg 1024w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-768x684.jpg 768w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-1536x1368.jpg 1536w, https:\/\/www.avanet.com\/assets\/sophos-zero-trust-network-access-ztna-identity-provider-600x534.jpg 600w\" sizes=\"auto, (max-width: 1664px) 100vw, 1664px\" \/><\/a><\/figure>\n<\/figure>\n\n<h3 class=\"wp-block-heading\">3. a\u00f1adir pasarela \/ conector (Configurar pasarelas)<\/h3>\n\n<p>Sophos Zero Trust Network Access Gateway es un componente de la arquitectura ZTNA.\nCon esta pasarela, se puede proporcionar acceso a aplicaciones y recursos a usuarios y dispositivos de forma segura y controlada. <\/p>\n\n<p>El art\u00edculo <a href=\"https:\/\/www.avanet.com\/es\/kb\/crear-sophos-ztna-gateway-connector\/\">Crear Sophos ZTNA Gateway<\/a> explica c\u00f3mo crear ZTNA On-Premise Gateway o ZTNA Cloud Gateway.<\/p>\n\n<h3 class=\"wp-block-heading\">4. a\u00f1adir pol\u00edtica (Add policy)<\/h3>\n\n<p>Siga las instrucciones.\nEscr\u00edbanos a trav\u00e9s del <a href=\"\">formulario de contacto<\/a> si desea que le demos prioridad. <\/p>\n\n<h3 class=\"wp-block-heading\">5. a\u00f1adir recurso (A\u00f1adir recursos)<\/h3>\n\n<p>Siga las instrucciones.\nEscr\u00edbanos a trav\u00e9s del <a href=\"\">formulario de contacto<\/a> si desea que le demos prioridad. <\/p>\n\n<h3 class=\"wp-block-heading\">6. instalar el cliente ZTNA en los terminales<\/h3>\n\n<p>Siga las instrucciones.\nEscr\u00edbanos a trav\u00e9s del <a href=\"\">formulario de contacto<\/a> si desea que le demos prioridad. <\/p>\n","protected":false},"author":5,"featured_media":0,"parent":0,"template":"","format":"standard","kb_kategorie":[718],"class_list":["post-108970","kb","type-kb","status-publish","format-standard","hentry","kb_kategorie-zero-trust"],"blocksy_meta":[],"acf":[],"_links":{"self":[{"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/kb\/108970","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/kb"}],"about":[{"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/types\/kb"}],"author":[{"embeddable":true,"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/users\/5"}],"wp:attachment":[{"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/media?parent=108970"}],"wp:term":[{"taxonomy":"kb_kategorie","embeddable":true,"href":"https:\/\/www.avanet.com\/es\/wp-json\/wp\/v2\/kb_kategorie?post=108970"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}