Connect your own Zscaler tenant (ZIA -- Internet Access/SWG, and ZPA -- Private Access/ZTNA) to see and manage your SASE/SSE posture from Imperal -- locations, URL filtering and firewall rules, clo...
What this app can do
36 tools registered
Connect ZscalerFree
Connect your Zscaler tenant by saving OneAPI OAuth2 client credentials (client_id, client_secret, vanity_domain, cloud), after checking they actually work. Create an OAuth2 client in Zidentity Admin Portal > API Clients, granting it the ZIA and/or ZPA scopes you need.
Disconnect ZscalerFree
Disconnect a Zscaler tenant: deletes the saved OneAPI credentials. Nothing in Zscaler itself is changed.
List ConnectionsFree
List the connected Zscaler tenants.
List Zia Locations8 tok
List ZIA locations -- the sites/offices/roaming-user groups that policies are assigned to.
Get Zia Location8 tok
Read one ZIA location in full.
Create Zia Location16 tok
Create a new ZIA location. Requires activate_zia_changes afterward to take effect.
Update Zia Location16 tok
Update selected fields of an existing ZIA location. Requires activate_zia_changes afterward to take effect.
Delete Zia Location16 tok
Permanently delete a ZIA location. Requires activate_zia_changes afterward to take effect. Cannot be undone.
List Zia Url Rules8 tok
List ZIA URL Filtering rules, in their enforced order.
Get Zia Url Rule8 tok
Read one ZIA URL Filtering rule in full.
Create Zia Url Rule16 tok
Create a new ZIA URL Filtering rule. Requires activate_zia_changes afterward to take effect.
Update Zia Url Rule16 tok
Update selected fields of an existing ZIA URL Filtering rule (name, action, order, state). Requires activate_zia_changes afterward.
Delete Zia Url Rule16 tok
Permanently delete a ZIA URL Filtering rule. Requires activate_zia_changes afterward. Cannot be undone.
List Zia Firewall Rules8 tok
List ZIA cloud Firewall Filtering rules.
Create Zia Firewall Rule16 tok
Create a new ZIA Firewall Filtering rule. Requires activate_zia_changes afterward to take effect.
Delete Zia Firewall Rule16 tok
Permanently delete a ZIA Firewall Filtering rule. Requires activate_zia_changes afterward. Cannot be undone.
List Zia Cloud App Rules8 tok
List ZIA Cloud App Control rules (SaaS application access rules).
List Zia Users8 tok
List ZIA users -- the identities policies apply to.
Create Zia User16 tok
Create a new ZIA user.
List Zia Groups8 tok
List ZIA groups, used to assign policies to sets of users.
Submit Sandbox File16 tok
Check/submit a file hash to Zscaler Sandbox for malware analysis.
Get Sandbox Report8 tok
Read a previously submitted Zscaler Sandbox report by file hash.
Activate Zia Changes20 tok
Activate (commit) all pending ZIA configuration changes so they take effect. ZIA batches edits until this is called explicitly -- same reasoning as ZIA's own admin console 'Activate' button.
List Zpa App Segments8 tok
List ZPA Application Segments -- the private applications users can be granted ZTNA access to without a VPN.
Get Zpa App Segment8 tok
Read one ZPA Application Segment in full.
Create Zpa App Segment16 tok
Create a new ZPA Application Segment -- register a private app (by domain names + ports) so it can be granted ZTNA access policies.
Update Zpa App Segment16 tok
Update selected fields of an existing ZPA Application Segment.
Delete Zpa App Segment16 tok
Permanently delete a ZPA Application Segment. Cannot be undone.
List Zpa Access Policies8 tok
List ZPA Access Policy rules -- who is allowed to reach which app segments, and under what conditions.
Create Zpa Access Policy16 tok
Create a new ZPA Access Policy rule (ALLOW/DENY) targeting app segments and/or user groups.
Delete Zpa Access Policy16 tok
Permanently delete a ZPA Access Policy rule.
List Zpa Connector Groups8 tok
List ZPA App Connector Groups -- pools of connectors deployed in the customer's private network.
List Zpa Connectors8 tok
List ZPA App Connectors -- the lightweight VMs/containers the customer runs to broker private access, with live control-channel status.
List Zpa Service Edges8 tok
List ZPA Private/Public Service Edges -- the traffic-forwarding components between users and connectors, with live control-channel status.
Bulk Url Rule Action60 tok
Enable or disable several ZIA URL Filtering rules in one call, by explicit rule ids. Continues past per-item failures and reports each outcome, same convention as every other bulk_* tool in the portfolio (e.g. MuleSoft Connector's bulk_stop_cloudhub_applications).
Audit Tenant40 tok
Build one aggregated health report across the connected Zscaler tenant: ZIA location/rule counts, ZPA app-segment counts, and any ZPA connectors reporting a non-healthy control-channel status -- the same 'audit_*' value-add pattern as every other connector in the portfolio (e.g. MuleSoft Connector's audit_cloudhub_environment).