Listing Thumbnail

    Zscaler Private Access Network Connector

     Info
    Deployed on AWS
    Zscaler Private Access (ZPA) Network Connectors provide a secure authenticated interface between remote network segments and the ZPA cloud, and help enable end-to-end secure remote access. Network Connectors are part of the VPN (for Legacy Apps) solution and build the inside-out tunnel to VPN Service Edges and ZPA Public Brokers. You can deploy Network Connectors in two forms: A standard virtual machine (VM) image for deployment in datacenter and campus remote sites. AMI images for Amazon Web Services (AWS) EC2 and VM images for Microsoft Azure. Additionally, Zscaler provides packages that you can install on RHEL (9.x) Linux distributions. Network Connectors allow seamless connectivity to specific network segments and can be deployed in any location that has connectivity to the ZPA cloud. Like App Connectors, Network Connectors connect outbound only and do not require inbound open ports for operation.

    Overview

    Play video

    The Zscaler Private Access (ZPA) service enables organizations to provide access to internal applications and services while ensuring the security of their networks. ZPA is an easier to deploy, more cost-effective, and more secure alternative to VPNs. Unlike VPNs, which require users to connect to your network to access your enterprise applications, ZPA allows you to give users policy-based secure access only to the internal apps they need. With ZPA, application access does not require network access. While ZPA connects users to an enterprise's internal applications, Zscaler Internet Access (ZIA) connects users to public applications on the internet. To learn more about ZIA architecture, see Understanding the ZIA Cloud Architecture. Additionally, ZPA decouples applications from the physical network so you can provide seamless connectivity to private internal applications and assets whether they are in the cloud, the data center, or both. It also adjusts dynamically to network changes, so you can move your resources without impacting user access.

    You can configure settings and policies in the ZPA Admin Portal, which also features dashboards where you can see your users and the apps they access, and monitor the health of your servers and resources. You can configure ZPA to automatically discover servers and applications when users request them, or you can configure them manually. You then define policies that specify which apps users or groups can use, and ZPA allows them to connect to only those apps. ZPA renders your applications invisible to all but the authorized users and makes them untraceable to anyone else. Like all Zscaler offerings, the ZPA service is based on Zscaler's global cloud platform, so there is no requirement for additional hardware or upgrades to existing hardware.

    The VPN (for Legacy Apps) solution for exception traffic provides a way to onboard applications that require server-to-client connectivity, and acts as an accelerant towards Zero Trust Network Architecture (ZTNA). This solution provides access to applications that can't immediately transition to Zero Trust access. It also minimizes disruption by allowing continued access to critical applications during the migration. The solution builds an alternate path from Zscaler Client Connector toward the Zero Trust Exchange (ZTE) and Network Connector, and from the application toward the ZTE.

    The Zscaler solution reduces operational overhead and offers additional security improvements while laying the foundation for security transformation to ZTNA.

    Highlights

    • ZPA Network Connectors create secure, outbound-only tunnels from remote networks to the ZPA cloud, enabling seamless, policy-based access to internal apps without exposing networks. This approach reduces operational overhead, keeps apps invisible to unauthorized users, and provides a smooth bridge toward full ZTNA on the Zscaler cloud platform.

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    Rhel 9

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Zscaler Private Access Network Connector

     Info
    Pricing and entitlements for this product are managed through an external billing relationship between you and the vendor. You activate the product by supplying a license purchased outside of AWS Marketplace, while AWS provides the infrastructure required to launch the product. AWS Subscriptions have no end date and may be canceled any time. However, the cancellation won't affect the status of the external license.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Version release notes

    Additional details

    Usage instructions

    In order to acquire a license key for this product, please contact us via our web form here: https://www.zscaler.com/company/contact .

    Once complete, you may access the User Interface of the Zscaler Cloud Portal by accessing this link here: https://admin.zscaler.net/ . If not completed prior, you will be promoted to create an Admin account for your Zscaler Cloud Portal.

    Utilizing the login you created, you may now utilize the Zscaler Cloud Portal to access your Zscaler management console where you will be able to manage and deploy new products on AWS, or other locations.

    For ZPA Connector AWS Deployment see the below:

    Update the Security Group associated to the Network Connector to temporarily allow inbound access on port 22, then complete the following steps to connect to the instance.

    SSH access is required in order to configure the provisioning key for the Network Connector. See instructions: https://help.zscaler.com/zpa/connector-deployment-guide-amazon-web-services#security 

    Log in to the Network Connector console using your AWS Private Key (i.e., a .pem file).

    SSH access is enabled by default on AWS Network Connectors, so there is no need to enable the service manually.

    Using a standard SSH client, enter the following command to connect to the AWS instance: ssh -i <AWS Private Key> admin@<Network Connector Public Hostname or IP Address>

    For example, the private key for the AWS instance is AWS.pem and the Network Connector IP address is 35.160.130.25: ssh -i AWS.pem admin@35.160.130.25

    Support

    Vendor support

    Zscaler global support is available around the clock, with dedicated customer support engineers providing personalized assistance to ensure that customers are getting the most value from our products. Our support engineers have significant experience in networking and security, working closely with operations, sales, and engineering teams to ensure rapid response and resolution.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    No customer reviews yet
    Be the first to review this product . We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.