Administrator CERTIFICATION Exam |
FREQUENTLY TESTED QUESTIONS WITH
CORRECT ANSWERS | BRAND NEW!
Save
Terms in this set (643)
,The Zero Trust Exchange verifies 1. Allow
identity and context via an IdP. 2. Block
Once this is verified policies can 3. Isolate
be enforced to do what four 4. Prioritize
actions?
Zscaler Private Access (ZPA) 1. Infrastructure as a Service (IaaS)
configures connectivity to private 2. Platform as a Service (PaaS)
applications and resources 3. Your private data center
hosted where?
Zscaler integrates with multiple Zscaler can integrate with Active Directory,
IdP partners and can work with Azure Active Directory, ADFS, Okta, Ping, or
_______. really any SAML 2.0-compliant identity
provider
,Define Service Provider (SP) and Service Provider (SP) - The "Application" Also
the role it plays with IdP known as the Relying Party (RP) to the Identity
integration with Zscaler. Provider (IdP) Employs the services of an IdP
for the Authentication and Authorization of
users Zscaler acts as a SAML SP
Define Identity Provider (IdP) and IdP - Authenticates Users/Devices Provides
the role it plays with IdP Identifiers and Identity Assertions for users
integration with Zscaler. that wish to access a service. IdP examples
include: Okta, Ping, AD FS, Azure AD
Define Security Assertions and Also known as Tokens Issued to users by the
the role it plays with IdP IdP Presented to SPs / RPs to confirm
integration with Zscaler. authentication Trust based on PKI Assertions
may contain: Authentication, Attribute, or
Authorization statements
, Describe the authentication flow 1. User Clicks an application.
for Zscaler utilizing SAML with an 2. User is redirected to Zscaler. (ZIA or ZPA
IdP initiated SSO. pending request)
3. User clicks to log into Zscaler (ZIA or ZPA
pending request)
4. User is redirected to SAML IdP login (this
can include user attributes and/or group
memberships)
5. User logs into IdP (this can include user
attributes and/or group memberships)
6. IdP sends over assertion Identity to user
(SAML assertion is encrypted)
7. User sends identity to Zscaler (SAML
assertion is encrypted)
8. Zscaler issues auth token to user (assertion
is verified)
9. User is given access to the application