- | Page
ZDTA EXAM QUESTIONS AND
ANSWERS LATEST UPDAT E
Question 1: The Zero Trust Exchange verifies identity
and context via an IdP. Once this is verified policies can be enforced to do what four actions?
- Allow
- Block
- Isolate
- Prioritize
CORRECT ANSWER: 1. Allow, 2. Block, 3. Isolate, 4.
Prioritize
Question 2: Zscaler Private Access (ZPA) configures
connectivity to private applications and resources hosted where?
- Infrastructure as a Service (IaaS)
- Platform as a Service (PaaS)
- Your private data center
- | Page
CORRECT ANSWER: 1. Infrastructure as a Service
(IaaS), 2. Platform as a Service (PaaS), 3. Your private data center
Question 3: Zscaler integrates with multiple IdP partners
and can work with _______.Zscaler can integrate with Active Directory, Azure Active Directory, ADFS, Okta, Ping, or really any SAML 2.0- compliant identity provider
CORRECT ANSWER: Active Directory, Azure Active
Directory, ADFS, Okta, Ping, or really any SAML 2.0- compliant identity provider
Question 4: Define Service Provider (SP) and the role it
plays with IdP integration with Zscaler.Service Provider (SP) - The "Application" Also known as the Relying Party (RP) to the Identity Provider (IdP) Employs the services of an IdP for the Authentication and Authorization of users Zscaler acts as a SAML SP
- | Page
CORRECT ANSWER: Service Provider (SP) - The
"Application" Also known as the Relying Party (RP) to the Identity Provider (IdP) Employs the services of an IdP for the Authentication and Authorization of users Zscaler acts as a SAML SP
Question 5: Define Identity Provider (IdP) and the role it
plays with IdP integration with Zscaler.IdP - Authenticates Users/Devices Provides Identifiers and Identity Assertions for users that wish to access a
service. IdP examples include: Okta, Ping, AD FS, Azure
AD
CORRECT ANSWER: IdP - Authenticates
Users/Devices Provides Identifiers and Identity Assertions for users that wish to access a service. IdP
examples include: Okta, Ping, AD FS, Azure AD
Question 6: Define Security Assertions and the role it
plays with IdP integration with Zscaler.
- | Page
Also known as Tokens Issued to users by the IdP Presented to SPs / RPs to confirm authentication Trust
based on PKI Assertions may contain: Authentication,
Attribute, or Authorization statements
CORRECT ANSWER: Also known as Tokens Issued to
users by the IdP Presented to SPs / RPs to confirm authentication Trust based on PKI Assertions may
contain: Authentication, Attribute, or Authorization
statements
Question 7: Describe the authentication flow for Zscaler
utilizing SAML with an IdP initiated SSO.
- User Clicks an application.
- User is redirected to Zscaler. (ZIA or ZPA pending
- User clicks to log into Zscaler (ZIA or ZPA pending
- User is redirected to SAML IdP login (this can include
request)
request)
user attributes and/or group memberships)