©2017 Zscaler, Inc. All rights reserved.0
Secure Remote Access To Apps In Azure
Patrick Foxhoven
CIO Zscaler
Experience Users Want.
Security You Need.
Chris Hines
Senior Manager, Zscaler Private Access
©2017 Zscaler, Inc. All rights reserved.1
Zscaler: The market leader in cloud security
Enterprise Customers
2,700 CUSTOMERS
Over 80 of the Fortune 500
54% International
Global Partners
100
Data centers
35B
Daily requests
185
Countries served
Unparalleled Cloud Scale
Largest Cloud Security Platform in the World
©2017 Zscaler, Inc. All rights reserved.2
Announced New Solution with Microsoft at Ignite
• Zscaler is a MSFT Partner
• New Zscaler Private Access for
Azure solution
“Zscaler helps to simplify the enterprise journey
to Microsoft Azure for both public and hybrid
environments…Zscaler Private Access gives
users the choice and the benefit of secure
connectivity...”
- Yousef Khalidi, Corporate Vice President,
Microsoft Azure Networking, Microsoft Corp
https://www.zscaler.com/press/zscaler-partners-accelerate-cloud-adoption-microsoft-azure
©2017 Zscaler, Inc. All rights reserved.3
The Castle and Moat Security Architecture
Secure your network by building a
perimeter around it.
©2017 Zscaler, Inc. All rights reserved.4
The Traditional Hub and Spoke Network Architecture.
Backhaul traffic to a central datacenter.
©2017 Zscaler, Inc. All rights reserved.5
Apps Moved To Azure
More than 40% of
enterprises are running
applications in Azure
©2017 Zscaler, Inc. All rights reserved.6
Global LB
DDoS
Ext. FW / IPSInternal LB
Internal FW
RAS (VPN)
Site-to-site VPN
Legacy Application Access Breaks Cloud and Mobility
Remote User
©2017 Zscaler, Inc. All rights reserved.7
How mobile users feel
with current experience
©2017 Zscaler, Inc. All rights reserved.8
Security
Castle & Moat User to App Policies
Cloud And Mobility Forces Secure Remote Access To Evolve
App Location
Datacenter Cloud
Direct-to-Cloud
Network
Hub & Spoke
©2017 Zscaler, Inc. All rights reserved.9
Modern Direct-to-Cloud
Architecture
Faster, simpler, and
more secure
Z-App
©2017 Zscaler, Inc. All rights reserved.10
Enterprise Benefits
CostExperience Security Simple
©2017 Zscaler, Inc. All rights reserved.11
Zscaler Private Access
A Revolutionary Approach to Internal App Access
©2017 Zscaler, Inc. All rights reserved.12
4 Key Design Tenets
1 Connect users to apps without bringing them on the network
2 Never expose applications to the Internet
3 Segment apps without segmenting the network
4 Provide remote access over the Internet without appliances
©2017 Zscaler, Inc. All rights reserved.13
Z-Connector
Z-App
Datacenter
Azure
ExpressRoute
• Cloud Policy Engine: user to app access rights
• Z-App: requests access to an app
• Z-Connector: sits in front of apps
(inside out connections)
• Z-Brokers: secure user to app connection
ZPA: Securely connects the right user to the right app
Experience Users Want. Security You Need.
Z-Brokers
©2017 Zscaler, Inc. All rights reserved.14
Zscaler & Azure
Better Together.
• Direct-to-cloud experience
• ZENs hosted within Azure
• Connectors hosted within Azure
• Enable local breakouts
©2017 Zscaler, Inc. All rights reserved.15
ZPA Service - The 4 Security Tenets in Action
EMPLOYEESPARTNERS
Remote users are never
placed on the network
• Application access,
not network access
1
Applications are invisible
to unauthorized users
• Users can’t access
what they can’t see
2
Policy-based access to
specific apps
• Define which users
access which apps
3
The internet is the new
secure network
• Double-tunneling for
secure access
4
©2017 Zscaler, Inc. All rights reserved.16
Azure Active Directory Marketplace
ZPA and Azure – One Click Integrations
©2017 Zscaler, Inc. All rights reserved.17
Cloud-based security
The access users want,
with the security you need
1. Secure access to apps in
datacenter & cloud
2. Authorized access to specific apps
3. Fast and seamless remote user
experience
4. No VPN
Vision: Secure Remote Access To Internal Apps In Cloud & Datacenter
HQON-THE-GO BRANCHES
©2017 Zscaler, Inc. All rights reserved.18
DEMO
Zscaler Private Access
©2017 Zscaler, Inc. All rights reserved.19
?
Q&A
©2017 Zscaler, Inc. All rights reserved.20
Questions and next steps
20
Learn more about Zscaler
ZPA For Azure
zscaler.com/product/zpa-for-
azure
Free Security Health Check
www.zscaler.com/securitypreview
Other Webcasts
Lessons for thriving - not just surviving - in the cloud
Jay Chaudhry - Zscaler & Frederik Janssen – Siemens
On Demand: zscaler.com/company/webcasts
©2017 Zscaler, Inc. All rights reserved.21
21

Secure access to applications on Microsoft Azure

  • 1.
    ©2017 Zscaler, Inc.All rights reserved.0 Secure Remote Access To Apps In Azure Patrick Foxhoven CIO Zscaler Experience Users Want. Security You Need. Chris Hines Senior Manager, Zscaler Private Access
  • 2.
    ©2017 Zscaler, Inc.All rights reserved.1 Zscaler: The market leader in cloud security Enterprise Customers 2,700 CUSTOMERS Over 80 of the Fortune 500 54% International Global Partners 100 Data centers 35B Daily requests 185 Countries served Unparalleled Cloud Scale Largest Cloud Security Platform in the World
  • 3.
    ©2017 Zscaler, Inc.All rights reserved.2 Announced New Solution with Microsoft at Ignite • Zscaler is a MSFT Partner • New Zscaler Private Access for Azure solution “Zscaler helps to simplify the enterprise journey to Microsoft Azure for both public and hybrid environments…Zscaler Private Access gives users the choice and the benefit of secure connectivity...” - Yousef Khalidi, Corporate Vice President, Microsoft Azure Networking, Microsoft Corp https://www.zscaler.com/press/zscaler-partners-accelerate-cloud-adoption-microsoft-azure
  • 4.
    ©2017 Zscaler, Inc.All rights reserved.3 The Castle and Moat Security Architecture Secure your network by building a perimeter around it.
  • 5.
    ©2017 Zscaler, Inc.All rights reserved.4 The Traditional Hub and Spoke Network Architecture. Backhaul traffic to a central datacenter.
  • 6.
    ©2017 Zscaler, Inc.All rights reserved.5 Apps Moved To Azure More than 40% of enterprises are running applications in Azure
  • 7.
    ©2017 Zscaler, Inc.All rights reserved.6 Global LB DDoS Ext. FW / IPSInternal LB Internal FW RAS (VPN) Site-to-site VPN Legacy Application Access Breaks Cloud and Mobility Remote User
  • 8.
    ©2017 Zscaler, Inc.All rights reserved.7 How mobile users feel with current experience
  • 9.
    ©2017 Zscaler, Inc.All rights reserved.8 Security Castle & Moat User to App Policies Cloud And Mobility Forces Secure Remote Access To Evolve App Location Datacenter Cloud Direct-to-Cloud Network Hub & Spoke
  • 10.
    ©2017 Zscaler, Inc.All rights reserved.9 Modern Direct-to-Cloud Architecture Faster, simpler, and more secure Z-App
  • 11.
    ©2017 Zscaler, Inc.All rights reserved.10 Enterprise Benefits CostExperience Security Simple
  • 12.
    ©2017 Zscaler, Inc.All rights reserved.11 Zscaler Private Access A Revolutionary Approach to Internal App Access
  • 13.
    ©2017 Zscaler, Inc.All rights reserved.12 4 Key Design Tenets 1 Connect users to apps without bringing them on the network 2 Never expose applications to the Internet 3 Segment apps without segmenting the network 4 Provide remote access over the Internet without appliances
  • 14.
    ©2017 Zscaler, Inc.All rights reserved.13 Z-Connector Z-App Datacenter Azure ExpressRoute • Cloud Policy Engine: user to app access rights • Z-App: requests access to an app • Z-Connector: sits in front of apps (inside out connections) • Z-Brokers: secure user to app connection ZPA: Securely connects the right user to the right app Experience Users Want. Security You Need. Z-Brokers
  • 15.
    ©2017 Zscaler, Inc.All rights reserved.14 Zscaler & Azure Better Together. • Direct-to-cloud experience • ZENs hosted within Azure • Connectors hosted within Azure • Enable local breakouts
  • 16.
    ©2017 Zscaler, Inc.All rights reserved.15 ZPA Service - The 4 Security Tenets in Action EMPLOYEESPARTNERS Remote users are never placed on the network • Application access, not network access 1 Applications are invisible to unauthorized users • Users can’t access what they can’t see 2 Policy-based access to specific apps • Define which users access which apps 3 The internet is the new secure network • Double-tunneling for secure access 4
  • 17.
    ©2017 Zscaler, Inc.All rights reserved.16 Azure Active Directory Marketplace ZPA and Azure – One Click Integrations
  • 18.
    ©2017 Zscaler, Inc.All rights reserved.17 Cloud-based security The access users want, with the security you need 1. Secure access to apps in datacenter & cloud 2. Authorized access to specific apps 3. Fast and seamless remote user experience 4. No VPN Vision: Secure Remote Access To Internal Apps In Cloud & Datacenter HQON-THE-GO BRANCHES
  • 19.
    ©2017 Zscaler, Inc.All rights reserved.18 DEMO Zscaler Private Access
  • 20.
    ©2017 Zscaler, Inc.All rights reserved.19 ? Q&A
  • 21.
    ©2017 Zscaler, Inc.All rights reserved.20 Questions and next steps 20 Learn more about Zscaler ZPA For Azure zscaler.com/product/zpa-for- azure Free Security Health Check www.zscaler.com/securitypreview Other Webcasts Lessons for thriving - not just surviving - in the cloud Jay Chaudhry - Zscaler & Frederik Janssen – Siemens On Demand: zscaler.com/company/webcasts
  • 22.
    ©2017 Zscaler, Inc.All rights reserved.21 21