Hi;
This is regarding my previous question in this forum "posted 10 minutes ago". A customer wants to have all Internet traffic go through Zscaler cloud but for certain domains, they want to have Broadcom's DLP CDS inspect uploads.
Is it better to have a WSS agent on the end user device, then proxy chain from Cloud SWG to Zscaler Cloud? or is it better to have the Zscaler agent on the end user device, then proxy chain from Zscaler cloud to Cloud SWG. Of course TLS interception is needed for this on the Cloud SWG to be able to do DLP inspection using the CDS.
Any articles about a similar implementation and how it can be done?
Kindly
Wasfi
-------------------------------------------