Book Image

Zscaler Cloud Security Essentials

By : Ravi Devarasetty
Book Image

Zscaler Cloud Security Essentials

By: Ravi Devarasetty

Overview of this book

Many organizations are moving away from on-premises solutions to simplify administration and reduce expensive hardware upgrades. This book uses real-world examples of deployments to help you explore Zscaler, an information security platform that offers cloud-based security for both web traffic and private enterprise applications. You'll start by understanding how Zscaler was born in the cloud, how it evolved into a mature product, and how it continues to do so with the addition of sophisticated features that are necessary to stay ahead in today's corporate environment. The book then covers Zscaler Internet Access and Zscaler Private Access architectures in detail, before moving on to show you how to map future security requirements to ZIA features and transition your business applications to ZPA. As you make progress, you'll get to grips with all the essential features needed to architect a customized security solution and support it. Finally, you'll find out how to troubleshoot the newly implemented ZIA and ZPA solutions and make them work efficiently for your enterprise. By the end of this Zscaler book, you'll have developed the skills to design, deploy, implement, and support a customized Zscaler security solution.
Table of Contents (15 chapters)
1
Section 1: Zscaler for Modern Enterprise Internet Security
8
Section 2: Zero-Trust Network Access (ZTNA) for the Modern Enterprise

Exploring clientless ZPA solutions

We looked at the ZPA architecture featuring the ZCC app. In certain environments, situations, and platforms, the ZCC app cannot be supported or installed. Let's look at two such clientless ZPA solutions.

Understanding the Zscaler Cloud Connector ZPA solution

Zscaler Cloud Connector aligns with the zero-trust access philosophy. It is a cloud-native service that allows for fast, secure connectivity between apps, and between an app and the internet.

Cloud connector

The cloud connector itself is a software instance that is in front of a VPC in AWS or a virtual network (VNET) in Microsoft Azure. Just as with the App Connector establishing outbound Datagram Transport Layer Security (DTLS) connections to the ZPA cloud, these cloud connectors establish outbound DTLS connections to a connection broker in the Zero Trust Exchange (ZTE).

ZTE

The ZTE is a large security cloud with a global footprint of more than 150 Zscaler data centers...