Zscaler Private Access Review
Use Cases and Deployment Scope
We use it for both users on site and off site as a way to reach the internal applications of our environment. The tool provides some microsegmentation and also grants us insight into what and when users are connecting to applications. It also provides a consistent user experience that is based upon user roles rather than that of IP.
Pros
- Microsegmentation
- Scalability
- Simplicity
Cons
- Would prefer to do L7 filtering instead of L4
- Would love to have a global find (how does this App Segment tie in everywhere)
- Sometimes error messages don't really provide much information
- PCAPs are the second step when traditionally that was the ace in the hole.
Return on Investment
- It allows for allowing entire groups access to applications, allowing for consistent experiences between the teams.
- Create a level of Microsegmentation organically in our environment where the only Microsegmentation done was at the network level. This goes to the user level to allow two users on the same network to have different levels of access
- With onboarding - the growing pains of new applications makes onboarding new things to the environment slightly painful and a task that traditionally didn't require much network involvement very network dependent.
Usability
Alternatives Considered
Zscaler Digital Experience (ZDX) and Zscaler Internet Access
Other Software Used
Palo Alto Networks Next-Generation Firewalls - PA Series, Zscaler Internet Access, Zscaler Digital Experience (ZDX), HPE Aruba Networking ClearPass Policy Manager, HPE Aruba Networking Switches, HPE Aruba Networking EdgeConnect SD-WAN
