Free Zscaler ZDTA Actual Exam Questions - Question 10 Discussion
D imo, since Department and Machine Group are well-known criteria, and SNI could be relevant for filtering traffic. C’s Time of Day feels off for ZPA access policies, which focus more on identity and device context.
C vs D? Time of Day and Client Type don’t seem standard for ZPA policies, so D still feels more spot-on given the usual group and network-based criteria.
D imo since Department and Machine Group are classic ZPA rule criteria.
Maybe D makes the most sense here because Department and Machine Group are definitely used in ZPA policies. SNI and Branch Connector Group also point to network-level controls specific to ZPA.
I’m thinking C is less likely because SCIM Group and Time of Day don’t seem like standard ZPA criteria compared to things like Group Membership or Machine Group. B includes Password, which feels off for Access Policy Rules, not authentication steps. The mention of Branch Connector Group in D seems very specific to ZPA, but I wonder if Domain Joined or Certificate Trust in A are more foundational. Anyone else think some options mix attributes from different policy layers?
D makes more sense since SNI and Branch Connector Group are ZPA-specific filters.
It’s A because Group Membership and Certificate Trust are standard in ZPA policies, and ZIA Risk Score can sometimes integrate with ZPA for risk-based access. The others include less relevant factors like passwords or SCIM groups.
D imo, the presence of SNI and Branch Connector Group really points to ZPA-specific criteria. The other options mention things like Password or ZIA Risk Score that don’t fit well with ZPA policies. Even without version specifics, D stands out as the only one fully tied to ZPA attributes.
Option D looks solid since it focuses on ZPA-specific attributes like SNI and Branch Connector Group, which are unique to ZPA access policies. The others include things more relevant to ZIA or general identity checks.
Is there any info on the ZPA version or specific policy context? Some criteria like Password (B) don’t seem right for Access Policy Rules, but not sure if newer versions changed that.