SD-WAN

 View Only
Expand all | Collapse all

Guidance Request: SilverPeak ACL Wildcard & Zscaler Bypass Issue

This thread has been viewed 6 times
  • 1.  Guidance Request: SilverPeak ACL Wildcard & Zscaler Bypass Issue

    Posted Feb 19, 2025 02:24 AM

    Hello All,

    I'm seeking guidance on an issue we're encountering with our domain ACL configuration. We're using wildcards in our SilverPeak ACLs and also utilizing Zscaler. Although we've added the domain to a Zscaler bypass overlay, traffic for this domain is still being routed through Zscaler.

    Could someone please direct me to the relevant documentation on using wildcards for domain entries in SilverPeak ACLs? Additionally, is it correct to assume that if a domain is included in the ACL, it should automatically bypass Zscaler?

    Thank you for your assistance.



    ------------------------------
    Fred
    ------------------------------


  • 2.  RE: Guidance Request: SilverPeak ACL Wildcard & Zscaler Bypass Issue

    Posted Feb 20, 2025 02:14 AM

    Best place to look is in the "Active and Recent flows" table. Find a flow that is not behaving as expected (use filters and/or search) and look at the flow details by hitting the icon in the details column for that flow.

    In the flow details you will find which overlay your traffic is entering and which ACL caused it. As with most ACL's. the first match is what decides. That may be a rule in a higher positioned BIO too.



    ------------------------------
    Jan-Willem
    ------------------------------