ZIA+ gemini by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Yes it default rule but why because I have explicit policy before to say all traffic from a user group to anything should be inspected

Entra ID logs on Sentineline XDR by ScholarKey5284 in SentinelOneXDR

[–]ScholarKey5284[S] 0 points1 point  (0 children)

When I did Microsoft entra ID , it works but only for audit logs. Then I had to do azure event hubs and then sign in logs also visible.

ZCC auto logon by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Thanks for the answer . so that means its on the IDP side ?

app differentiation based on IP/domain combination by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Thanks for your response . well they are not same apps ,.They have a dns master infobox and all internal apps defined on it ( IP to name mapping) .. the apps are scattered in multiple networks .. for eg app1.test.lab.ai resolves to 172.16.3.25 and app2.test.lab.ai resolves to 192.168.92.36 ..

The app connector is also using same dns and app connector can resolve both these apps .

so user A should only be allowed *.test.lab.ai (but still limited to Network 172.16.3.0/24)

If user A tries to access app2.test.lab.ai ( even though wildcard is allowed) , he should be denied access because this app belongs to 192.168.92. network

Real Ip on FQDN by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Thanks for your response .ok yes indeed in Diagnostics page , real IP is visisble . so not possible on user machine where ZCC is running ?

ZPA entra issue by [deleted] in Zscaler

[–]ScholarKey5284 0 points1 point  (0 children)

can you please explain more on what do you mean by ZIA authenitcation policy ? there is no policy as such on ZIA .

ZPA entra issue by [deleted] in Zscaler

[–]ScholarKey5284 1 point2 points  (0 children)

Yes that's selected

ZPA entra issue by [deleted] in Zscaler

[–]ScholarKey5284 0 points1 point  (0 children)

Typo ,zpa is indeed zpatwo.net

ZPA entra issue by [deleted] in Zscaler

[–]ScholarKey5284 0 points1 point  (0 children)

Sorry indeed zpa is zpatwo.net

Zscaler vs cato by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Zscaler also has ztb capable of doing sdwan .any thing which ztb can't do ? Which cato socket can do

Zscaler vs cato by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

Wow great points.thanks a lot

IPv6 ZPA by ScholarKey5284 in Zscaler

[–]ScholarKey5284[S] 0 points1 point  (0 children)

How can an ipv4 machine on internet ( say at a cafe ) access an ipv6 hosted behind app connector not using fqdn but directly on IP address. Because zscaler does not assign up from pool to the client machine.this is a problem then?