Question 71
A log review shows requests to a sanctioned application being allowed despite a later rule intended to restrict access by time of day.
The rule set is:
* Allow the sanctioned application for All Employees
* Block the sanctioned application outside business hours for All Employees
* Log restricted-access hits
Which cause and risk are most consistent with this behavior?
The rule set is:
* Allow the sanctioned application for All Employees
* Block the sanctioned application outside business hours for All Employees
* Log restricted-access hits
Which cause and risk are most consistent with this behavior?
Question 72
Which of the following connects Zscaler users to the nearest Microsoft 365 servers for a better experience?
Question 73
As technology that exists for a very long period of time, has URL Filtering lost its effectiveness?
Question 74
A company must grant engineers and finance staff access to different private resources. After rollout, all users have access to both sets of resources.
Which action should the administrator take to tighten least privilege while keeping access operational?
Which action should the administrator take to tighten least privilege while keeping access operational?
Question 75
A threat actor's command-and-control infrastructure uses hard-coded IP addresses and several domains resolved through DNS. An organization wants Zscaler to block callback attempts with minimal dependence on endpoint agents and to enforce the decision consistently for roaming users.
Which configuration best aligns with ZIA policy enforcement and the zero-trust model?
Which configuration best aligns with ZIA policy enforcement and the zero-trust model?
