We're a Microsoft Cloud and SSO to Entra organization, and we recently hired someone who needs to travel overseas frequently. We're on the hunt for an affordable VPN solution that allows them to connect back to the US without needing to set up a point-to-site connection back to HQ, as most of us are working remotely. Also, we are in the process of implementing Zscaler ZIA, so I'm curious what everyone would recommend for this situation.
3 Answers
Have you looked into Tailscale? It might be exactly what you need for this scenario. It's simple to set up and manage, perfect for someone frequently on the go.
I would suggest considering Tailscale with headscale or using WireGuard pointing to a server that you manage. You could look into a Digital Ocean droplet for an inexpensive option.
A couple of things to think about: A) Zscaler has a bad reputation according to some, and B) How is it that you're mostly remote but not using a VPN?

What makes you say Zscaler is trash? Also, have you considered Cloudflare Access as an alternative ZTNA solution? I'm just trying to understand your viewpoint since you didn’t provide any reasons.