Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Zscaler Digital Transformation Administrator ZDTA Question # 11 Topic 2 Discussion

Zscaler Digital Transformation Administrator ZDTA Question # 11 Topic 2 Discussion

ZDTA Exam Topic 2 Question 11 Discussion:
Question #: 11
Topic #: 2

A SOC subscribes to a third-party blocklist and must ensure that listed destinations are denied while preserving predefined rules required for Microsoft 365 access. ZIA Firewall Filtering rules are evaluated from top to bottom using first-match processing.

How should the blocking rule be positioned?


A.

Insert a drop rule for the third-party destination group above generic outbound allow rules while keeping the essential Microsoft 365 predefined rules intact


B.

Move the third-party block rule to the bottom so it is evaluated after application identification for standard services


C.

Modify the Microsoft 365 predefined rules to include third-party exclusions, then append a general deny rule for unclassified traffic


D.

Place broad SaaS allow rules at the top and insert the third-party block rule below them to avoid unintended denial of legitimate sessions


Get Premium ZDTA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.