Zscaler Private Access (ZPA)
Zscaler Private Access (ZPA) is a zero trust network access solution that provides secure remote access to applications.
Asset Types Fetched
- Devices, SaaS Applications, Network/Firewall Rules
Parameters
-
Host Name or IP Address (required) - The hostname or IP address of the Zscaler Private Access (ZPA) server that Axonius can communicate with via the Required Ports.
- If an organization logs into ZPA::Zscaler Private Access, then the hostname of the ZPA API Portal for that organization is
config.private.zscaler.com. - If an organization logs in to zpatwo.net, then the hostname of the ZPA API Portal for that organization is
config.zpatwo.net.
- If an organization logs into ZPA::Zscaler Private Access, then the hostname of the ZPA API Portal for that organization is
-
Client ID and Client Secret (required) - The credentials for a user account that has permissions to fetch assets. For more information about authentication, see Getting Started.
-
Customer ID (required) - The customer ID for a user account provided by Zscaler that has permissions to fetch assets.
-
Verify SSL - Select whether to verify the SSL certificate of the server against the CA database inside of Axonius. For more details, see SSL Trust & CA Settings.
-
HTTPS Proxy (optional) - Connect the adapter to a proxy instead of directly connecting it to the domain.
-
HTTPS Proxy User Name (optional) - The user name to use when connecting to the value supplied in Host Name or IP Address via the value supplied in HTTPS Proxy.
-
HTTPS Proxy Password (optional) - The password to use when connecting to the server using the HTTPS Proxy.
To learn more about common adapter connection parameters and buttons, see Adding a New Adapter Connection.
Advanced Settings
Note
Advanced settings can either apply to all connections for this adapter, or to a specific connection. Refer to Advanced Configuration for Adapters.
To fetch different asset types from specific endpoints, enable or disable the following options:
- Fetch Devices of sub type app_connector from App Connector Endpoint
- Fetch Devices of sub type private_service_edge from Private Service Edge Endpoint
- Fetch Devices of sub type cloud_and_branch from Cloud and Branch Connector Endpoint
- Fetch DiscoveredSaasApplications from Applications Endpoint
- Enrich App Connector Endpoint with Global Policy Endpoint
- Fetch Devices of sub type private_service_edge from Private Service Edge Endpoint
- Fetch Devices of sub type cloud_and_branch from Cloud and Branch Connector Endpoint
- Fetch DiscoveredSaasApplications from Applications Endpoint
- Fetch Firewall of sub type access_policy from Access Policy Endpoint
- Fetch Firewall of sub type global_policy from Global Policy Endpoint
Note
To learn more about Adapter Configuration tab advanced settings, see Adapter Advanced Settings.
APIs
Axonius uses the Zscaler ZPA API.
Required Ports
Axonius must be able to communicate with the value supplied in Host Name or IP Address via the following ports:
- TCP port 443
Supported From Version
Supported from Axonius version 6.1.56.0
Updated 2 days ago
