About this interactive
The most secure network is one that is unplugged, and nobody can work that way. At some point you have to extend trust to devices and sites you do not control. A trust model is a way of doing that safely, and public key infrastructure is one place the lesson applies them.
Direct trust is trust straight between two entities: the TechKnowSurge site's certificate is installed straight onto your own machine, and no third party is involved. It works, but it does not scale, because nobody installs a separate certificate for every site they visit.
Third-party trust solves that. You trust a certificate authority, the certificate authority has checked the site, so you can trust the site. Hierarchy trust passes trust down: a top-level authority trusts a subordinate, which can pass it down again, building layers underneath one trusted core. A web of trust has no top at all: you trust a stranger because people you trust directly trust them.
Zero trust sounds like the opposite of all this, and it is not. It is the rule that someone who simply plugs into the internal network is not trusted with its resources until they have been verified: never trust, always verify. A company can enforce it with an internal certificate authority of its own, which is itself a use of the models above. Zero trust does not mean nobody is ever trusted; it means trust is never given just for being on the inside.
To sort each card, ask how the trust gets there. Straight between the two? Through one trusted outsider? Down through levels? Across a group of peers? Or is the point that being on the inside earns nothing until checked?
About TechKnowSurge
TechKnowSurge builds IT and cybersecurity professionals through hands-on, concept-first training built around real understanding — not memorization. Free interactive tools, structured programs, and 25+ years of real-world experience, all in one place.
Explore free tools and programs →