Opened 8 months ago

Closed 8 months ago

#13086 closed Other (rejected)

Access while using Zscaler

Reported by: ICORDERO Owned by:
Priority: normal Component: Other
Keywords: block, timeout, zscaler, whitelist Cc: ICORDERO
Component version: Operating system type: Windows
Operating system version: Microsoft Windows 10 Enterprise

Description

We use Zscaler as proxy, traffic is reaching FileZilla using Zsclaer ranges (like ATL DC 104.129.206.0/23) and we are not getting access. We confirmed that whitelisting needs to be done in FileZilla to ensure access from Zscaler works.

Attachments (2)

Zscaler IP.jpg (110.0 KB ) - added by ICORDERO 8 months ago.
IP Address details
Filezilla.jpg (66.6 KB ) - added by ICORDERO 8 months ago.
Error when trying to access

Download all attachments as: .zip

Change History (3)

by ICORDERO, 8 months ago

Attachment: Zscaler IP.jpg added

IP Address details

by ICORDERO, 8 months ago

Attachment: Filezilla.jpg added

Error when trying to access

comment:1 by Tim Kosse, 8 months ago

Resolution: rejected
Status: newclosed

If you hide behind a "Zero trust" proxy that doesn't ensure traffic routed through it is actually genuine, don't act surprised if traffic from that proxy isn't trusted. If you are a legitimate business and do not do anything malicious, you do not need to hide behind a proxy.

Massive amounts of malicious traffic has been coming from Zscaler address ranges, the CIDR you mentioned is no exception. Zscaler has in the past not responded to emails sent to the abuse contact address listed in the ASN databases, meaning that they condone all abuse committed through their network. As result traffic from all Zscaler ASNs has now been blocked indefinitely.

Note: See TracTickets for help on using tickets.