ZDTA Study Practice Questions
With Correct Answers
What is used to detect if a Digital Signatures
SAML assertion was
modified after being
issued?
Options:
- XML
- Digital Signatures
- Attributes
- Tokens
How is a SAML assertion The IdP sends it via the user's
delivered to Zscaler? browser to the SP
(Uses a form POST submitted via
Options: JavaScript)
- The IdP sends it via an HTTP
post directly to the SP via a
backend API
- The SP sends it via an HTTP
post directly to the IdP via a
backend API
- The IdP sends it via the user's
browser to the SP
- The SP sends it via a
trusted authority to the IdP
,In what way does Issuing SAML assertions
Zscaler's Identity Proxy enable
authentication to SaaS
applications?
Options:
- Injecting identity
headers into the HTTP request
- SSL Inspection
- Browser Isolation
- Issuing SAML assertions
How does Zscaler Internet SAML, LDAP, Hosted Database
Access
authenticate users? (Select 3)
Options:
- SAML
- SCIM
- LDAP
- Hosted Database
How does Zscaler Private Access SAML
authenticate end users?
Options:
- Username and
Password in a form-
based auth
- Hosted DB
- SAML
- SCIM
Send different attributes via SCIM
What is the fastest way to change a
user's access
entitlements?
,In order for Zscaler to SAML
enforce policy based on
accessing devices, what
method is best used by
IdPs to share information about
a user's accessing device?
Options
- Kerberos
- SAML
- Header Injection
- Mobile Device
Management
Privileged Remote Access SSH, RDP
supports which protocols?
(Select 2)
Options:
- SSH
- RDP
- CIFS
- HTTP/HTTPS
Which services can coexist on Isolation, Browser Access, and
an Application Segment? Inspection
Options:
- Isolation, Browser
Access, and Inspection
- RDP, SSH, and
Inspection
- Inspection, Isolation, and
RDP
- CIFS, RDP, and SSJ
, How often does the Every 2 hours
Zscaler Client Connector check
for software
updates?
Options:
- Every 2 hours
- Every 6 hours
- Every 12 hours
- Every 24 hours
Which check guarantees Client Certificate & Non-
identification of a Exportable private key
corporate-managed device
by the Zscaler
Client Connector?
You want Zscaler Client --cloudName
Connector to --userDomain
automatically redirect to your
corporate SAML IDP on launch.
Which installer options should
you
configure to do so?
(Select 2)
Where is the control to In the Application Profile
prevent a user from
exiting Zscaler Client
Connector?
Options:
- It's a ZCC Installer
option
- In the Forwarding
Profile
- In the Application
Profile
- Under Administration,
Advanced Settings