Pre-Winter Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Zscaler ZDTA - Zscaler Digital Transformation Administrator

Page: 7 / 9
Total 273 questions

What ports and protocols are forwarded to the Zero Trust Exchange when Zscaler Client Connector is using Tunnel 2.0?

A.

TCP ports 80, 443 and 8080 only.

B.

Any HTTP/HTTPS traffic as well as DNS.

C.

All TCP and UDP ports as well as ICMP traffic.

D.

All Web ports as well as FTP and SSH.

What is the maximum default frequency of device posture profile evaluation by Zscaler Client Connector?

A.

15 minutes

B.

2 minutes

C.

5 minutes

D.

10 minutes

When enabled during Zscaler Client Connector (ZCC) installation, what specific control does the Strict Enforcement feature apply to internet access on end-user Windows workstations?

A.

It requires users to restart their Windows workstations after ZCC installation before accessing the internet.

B.

It prevents users from uninstalling ZCC without proper authorization.

C.

It requires users to enroll with ZCC before accessing the internet.

D.

It prevents users from logging out of ZCC without proper authorization.

Which of the following is a valid action for a SaaS Security API Data Loss Prevention Rule?

A.

Enable AI/ML based Smart Browser Isolation

B.

Quarantine Malware

C.

Create Zero Trust Network Decoy

D.

Remove External Collaborators and Sharable Link

Fundamental capabilities needed by other services within the Zscaler Zero Trust Exchange are provided by which of these?

A.

Access Control Services

B.

Digital Experience Monitoring

C.

Cyber Security Services

D.

Platform Services

A help desk receives intermittent Microsoft 365 latency complaints after local Internet breakout was enabled at several sites. The problem increases during peak collaboration windows and dies down unpredictably.

Which action should an administrator take to capture diagnostic information, determine where path issues emerge, and attach evidence to the incident workflow?

A.

Invoke ZDX Troubleshooting APIs to collect current hop-by-hop path metrics, DNS resolution times, and HTTP responses for the affected sessions.

B.

Force traffic-steering changes at egress to prefer alternate service edges, anticipating improvements despite incomplete visibility.

C.

Expand TLS inspection exceptions for Microsoft endpoints to reduce inspection overhead and anticipate lower timeouts.

D.

Increase Bandwidth Control allocations for productivity classes during peak periods, assuming shaping under-provisioning is causing congestion.

A campaign alert identifies affected users and devices across multiple sites.

Which action should the SOC lead take to strengthen response performance and reduce repetitive manual tasks?

A.

Trigger a SOAR playbook through platform APIs to create tickets, block domains in ZIA, and isolate affected endpoints

B.

Assign manual triage to each site and postpone enforcement changes until endpoint teams confirm independent findings

C.

Disable automated notifications to collaboration tools to reduce noise while analysts evaluate logs for each user separately

D.

Increase the alert-severity classification so future campaign alerts appear higher in queues despite limited context enrichment

A mixed policy set contains an Allow for high-value assets with posture, followed by a Block for high-value assets, then role-specific Allow rules for contractors and employees. Multiple users report unexpected reach to internal apps from unmanaged devices.

Considering rule order, attribute evaluation, and logical operators in ZPA Access Policies, which change best narrows access while minimizing unintended matches?

A.

Move the Block for high-value assets ahead of the posture-gated Allow to force stricter denial before any role-specific permissions are evaluated

B.

Convert client type and application segment fields to AND logic within the Allow rules so fewer sessions qualify during initial matching

C.

Add a trusted network condition to the employee Allow rule so sessions originating from external locations match a later Block action

D.

Place the posture-gated Allow for sensitive apps above role-specific Allows and apply AND logic to SAML/SCIM attributes and posture in those role rules

Which of the following statements most accurately describes Zero Trust Connections?

A.

They require that SSH inspection be enabled.

B.

They are dependent on a fixed / static network environment.

C.

They are independent of any network for control or trust.

D.

They require IPv6.

Can URL Filtering make use of Cloud Browser Isolation?

A.

No. Cloud Browser Isolation is a separate platform.

B.

No. Cloud Browser Isolation is only a feature of Advanced Threat Defense.

C.

Yes. After blocking access to a site, the user can manually switch on isolation.

D.

Yes. Isolate is a possible Action for URL Filtering.