Zscaler Adaptiva Deployment Guide FINAL
Zscaler Adaptiva Deployment Guide FINAL
DEPLOYMENT GUIDE
Contents
Terms and Acronyms 4
Acronym Definition
CA Central Authority (Zscaler)
CDN Content Delivery Network (Adaptiva)
CSV Comma-Separated Values
DLP Data Loss Prevention
DNS Domain Name Service
DPD Dead Peer Detection (RFC 3706)
GRE Generic Routing Encapsulation (RFC2890)
ICMP Internet Control Message Protocol
IdP Identity Provider
IKE Internet Key Exchange (RFC2409)
IPS Intrusion Prevention System
IPSec Internet Protocol Security (RFC2411)
PFS Perfect Forward Secrecy
PSK Pre-Shared Key
SaaS Software as a Service
SSL Secure Socket Layer (RFC6101)
TLS Transport Layer Security
VDI Virtual Desktop Infrastructure
XFF X-Forwarded-For (RFC7239)
ZPC Zscaler Posture Control (Zscaler)
ZDX Zscaler Digital Experience (Zscaler)
ZIA Zscaler Internet Access (Zscaler)
ZPA Zscaler Private Access (Zscaler)
Trademark Notice
© 2025 Zscaler, Inc. All rights reserved. Zscaler™ and other trademarks listed at zscaler.com/legal/trademarks are either (i)
registered trademarks or service marks or (ii) trademarks or service marks of Zscaler, Inc. in the United States and/or other
countries. Any other trademarks are the properties of their respective owners.
Zscaler Overview
Zscaler (NASDAQ: ZS) enables the world’s leading organizations to securely transform their networks and applications for
a mobile and cloud-first world. Its flagship Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) services create
fast, secure connections between users and applications, regardless of device, location, or network. Zscaler delivers its
services 100% in the cloud and offers the simplicity, enhanced security, and improved user experience that traditional
appliances or hybrid solutions can’t match. Used in more than 185 countries, Zscaler operates a massive, global cloud
security platform that protects thousands of enterprises and government agencies from cyberattacks and data loss. To
learn more, see Zscaler’s website.
Adaptiva Overview
Adaptiva is a leading, global provider of endpoint management and security solutions. The company’s products, including
OneSite Cloud, Endpoint Health, and Evolve VM empower enterprises to manage and secure endpoints at unparalleled
speed and massive scale using the power of peer-to-peer technology. Leading global Fortune 1000 organizations,
including T- Mobile, Nokia, HSBC, Walgreens, the U.S. Department of Defense, and the U.S. Department of Homeland
Security, use Adaptiva products to eliminate the need for a vast IT infrastructure and automate countless endpoint
management and security tasks. To learn more, refer to Adaptiva’s website.
Audience
This guide is for network administrators, endpoint and IT administrators, and security analysts responsible for deploying,
monitoring, and managing enterprise security systems. For additional product and company resources, see:
• Zscaler Resources
• Adaptiva Resources
• Appendix A: Requesting Zscaler Support
Software Versions
This document was authored using the latest version of Zscaler software.
If you are using this guide to implement a solution at a government agency, some of the content might be
exclamation-triangle different for your deployment. Efforts are made throughout the guide to note where government agencies might
need different parameters or input. If you have questions, contact your Zscaler Account team.
ZIA Overview
ZIA is a secure internet and web gateway delivered as a service from the cloud. Think of ZIA as a secure internet on-
ramp—just make Zscaler your next hop to the internet via one of the following methods:
• Setting up a tunnel (GRE or IPSec) to the closest Zscaler data center (for offices).
• Forwarding traffic via our lightweight Zscaler Client Connector or PAC file (for mobile employees).
No matter where users connect—a coffee shop in Milan, a hotel in Hong Kong, or a VDI instance in South Korea—they get
identical protection. ZIA sits between your users and the internet and inspects every transaction inline across multiple
security techniques (even within SSL).
You get full protection from web and internet threats. The Zscaler cloud platform supports Cloud Firewall, IPS,
Sandboxing, DLP, and Isolation, allowing you to start with the services you need now and activate others as your needs
grow.
ZPA Overview
ZPA is a cloud service that provides secure remote access to internal applications running on a cloud or data center using
a Zero Trust framework. With ZPA, applications are never exposed to the internet, making them completely invisible
to unauthorized users. The service enables the applications to connect to users via inside-out connectivity rather than
extending the network to them.
ZPA provides a simple, secure, and effective way to access internal applications. Access is based on policies created by
the IT administrator within the ZPA Admin Portal and hosted within the Zscaler cloud. On each user device, software
called Zscaler Client Connector is installed. Zscaler Client Connector ensures the user’s device posture and extends a
secure microtunnel out to the Zscaler cloud when a user attempts to access an internal application.
Zscaler Resources
The following table contains links to Zscaler resources based on general topic areas.
Name Definition
ZIA Help Portal Help articles for ZIA.
ZPA Help Portal Help articles for ZPA.
Zscaler Tools Troubleshooting, security and analytics, and browser extensions that help
Zscaler determine your security needs.
Zscaler Training and Certification Training designed to help you maximize Zscaler products.
Submit a Zscaler Support Ticket Zscaler Support portal for submitting requests and issues.
The following table contains links to Zscaler resources for government agencies.
Name Definition
ZIA Help Portal Help articles for ZIA.
ZPA Help Portal Help articles for ZPA.
Zscaler Tools Troubleshooting, security and analytics, and browser extensions that help
Zscaler determine your security needs.
Zscaler Training and Certification Training designed to help you maximize Zscaler products.
Submit a Zscaler Support Ticket Zscaler Support portal for submitting requests and issues.
Adaptiva Resources
The following table contains links to Adaptiva support resources.
Name Definition
Adaptiva Product Documentation Online product documentation for Adaptiva products.
Adaptiva Community Online community for Adaptiva customers.
Adaptiva Support Online support for Adaptiva customers.
This guide covers the configuration of Zscaler Internet Access for Adaptiva OneSite Cloud thus allowing the full
functionality of the product.
Configure ZIA
Log in to the ZIA Admin Portal.
In the Add URL Filtering Rule window, select the Rule Order based on your current policy processing and enable the rule
under Rule Status. Then select the arrow in URL Categories and finally select the Add icon (blue +) on the URL Selection
window to add in Adaptiva Cloud Category.
The rule name appears in the URL & Cloud App Control page.
Clipboard-list If Amazon AWS is allowed, the minimum configuration required for the server to access for the connection is
Protocols HTTP, HTTP Proxy, HTTPS, SSL, Tunnel SSL, Request Methods of Connect, Delete, Get, Options, Put, and
Post.
In the Add URL Filtering Rule window, select the Rule Order based on your current policy processing and enable the rule
under Rule Status. Then select the arrow in URL Categories and finally select the Add icon (blue +) on the URL Selection
window to add in Amazon AWS Category.
1. Select the Add icon (blue +) sign next to the Search field on the URL Selection window.
2. Enter a Name (e.g., Amazon AWS).
3. Under Custom URLs, enter .amazonaws.com.
4. (Optional) Description: Enter the URL category for Amazon AWS.
5. Click Save.
The Adaptiva S3 Bucket appears in the URL & Cloud App Control page.
From the ZIA Admin Portal, go to Dashboard > Zscaler Client Connector Portal.
If the Forwarding Profile Tunnel version is set to Z-Tunnel 1.0, no additional settings are needed.
If the Forwarding Profile Tunnel version is set to Z-Tunnel 2.0, the following configuration edits are needed on the App
Profile.
6. Click Save.
Figure 27. Collecting details to open support case with Zscaler TAC
3. With your company ID information, you can open a support ticket. Go to Dashboard > Support > Submit a Ticket.