VPN: 2. Access: Machine: Windows
For Windows we need to have Active Directory service. we are running join command powershell of the AD server.
also we need to have running linux machine for "windows-service" this will act like jump machine and will be pointer to the windows hosts we need to RDP connect. We are connecting with tokens windows-server and linux-service.
in this point when user have access for connect to the window pc, it's not more "vpn-zero-trust-network". He is connected on the windows pc and that pc is on his local network. security now is on windows site, ad-user permissions, firewalls, antivirus, network and admin rights on that machine.
also we need to check session recording logs, because now recording is in gif format. take more space.