Reader small image

You're reading from  Zscaler Cloud Security Essentials

Product typeBook
Published inJun 2021
PublisherPackt
ISBN-139781800567986
Edition1st Edition
Right arrow
Author (1)
Ravi Devarasetty
Ravi Devarasetty
author image
Ravi Devarasetty

Ravi Devarasetty is originally from India and came to the United States for his higher education. He started his IT career in embedded software development, moved into 24x7 network operations, later transitioned into secure web gateways, and now works in public cloud security. He likes constant learning, both through self-study and via mentoring relationships. He likes to tinker with technology and loves it when he is able to put the things he has learned toward creating a unique solution. He has experience working as a Zscaler solution deployment engineer as part of a Managed Security Service Provider (MSSP) and as a Zscaler consultant. He holds multiple Zscaler certifications, and is also certified in CISSP, CCSK, AlienVault, AWS, and Microsoft Azure.
Read more about Ravi Devarasetty

Right arrow

Using Zscaler PSEs – where the policies are applied and enforced

The next important component of the Zscaler cloud is the PSE. Recall that Zscaler sits between the end user and the web destination; so, when the end user is trying to go out to the internet, their first stop is the PSE. The user web traffic directly hits the nearest PSE or the PSE configured by the company administrator.

The PSE being in the data plane, its task is to perform high-speed data-packet inspection and company policy enforcement. When the PSE encounters a new packet for which it does not know the company or user details, it performs a lookup to the CA and asks the CA for details about that packet. It extracts that randomized identifier we talked about in the previous section and uses it to query the CA. The CA returns the identity and the policy information for that identifier in less than a second.

For all subsequent data packets that are part of this traffic session, the PSE remembers this user...

lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Zscaler Cloud Security Essentials
Published in: Jun 2021Publisher: PacktISBN-13: 9781800567986

Author (1)

author image
Ravi Devarasetty

Ravi Devarasetty is originally from India and came to the United States for his higher education. He started his IT career in embedded software development, moved into 24x7 network operations, later transitioned into secure web gateways, and now works in public cloud security. He likes constant learning, both through self-study and via mentoring relationships. He likes to tinker with technology and loves it when he is able to put the things he has learned toward creating a unique solution. He has experience working as a Zscaler solution deployment engineer as part of a Managed Security Service Provider (MSSP) and as a Zscaler consultant. He holds multiple Zscaler certifications, and is also certified in CISSP, CCSK, AlienVault, AWS, and Microsoft Azure.
Read more about Ravi Devarasetty