TABLE OF CONTENTS

  • Product Details
  • Issue/ Problem
  • Impact
  • Solution
  • Best Practice
  • Summary


Product : Zscaler Internet Access

Component : Zscaler Client App Tunnel 2.0

Version : 2.8.17  Build No. : 152.2



Issue/ Problem :


Some user encounter unable to access Bloomberg client for dedicated lease line network . So the proposed solution is to perform bypass for Bloomberg on Tunnel 2.0 on VPN Gateway Bypass and Destination exclusions for IPV4




Impact :


User unable to access the Bloomberg Client Application as it will continue looping


Solution : 


On App Profile VPN Gateway Bypass Portion, proceed to add the following below



69.187.16.0/20

69.187.32.0/19

69.187.73.21/26

69.191.176.0/21

69.191.192.0/18

103.251.205.0/26

160.43.250.0/24

160.43.251.0/24

160.43.252.0/24

160.43.253.0/24

205.216.112.0/24

206.156.53.0/24

208.22.56.0/24

208.22.57.0/24

bloomberg.net

bloomberg.com

blpprofessional.com

btogo.com


69.184.68.202

208.134.161.154

69.187.116.71

208.134.161.245

23.53.167.171

23.57.77.60

208.134.161.75

208.134.161.212

208.134.161.78

69.184.69.88

208.134.161.247

199.105.182.36


Then, on the Source Port-Based Bypasses to add the following below



3389:*

8292:*

48129:*

48130:*

48131:*

48132:*

48134:*

48135:*

48136:*

48137:*

8194:*

8195:*

8196:*

8197:*

8198:*

8290:*

8291:*

8293:*

8294:*

8228:*

8209:*

8210:*

8211:*

8212:*

48133:*

8213:*

8214:*

8215:*

8216:*

8217:*

8218:*

8219:*

8220:*


After that to add the following below to the Destinations for IPV4



69.187.16.0/20

69.187.32.0/19

69.187.73.21/26

69.191.176.0/21

69.191.192.0/18

103.251.205.0/26

160.43.250.0/24

160.43.251.0/24

160.43.252.0/24

160.43.253.0/24

205.216.112.0/24

206.156.53.0/24

208.22.56.0/24

208.22.57.0/24

*:48129:*

*:8292:*

*:48130:*

*:48131:*

*:48132:*

*:48133:*

*:48134:*

*:48135:*

*:48136:*

*:48137:*

*:8194:*

*:8195:*

*:8196:*

*:8198:*

*:8290:*

*:8291:*

*:8293:*

*:8294:*

*:8228:*

*:8209:*

*:8210:*

*:8211:*

*:8212:*

*:8213:*

*:8214:*

*:8215:*

*:8216:*

*:8217:*

*:8218:*

*:8219:*

*:8220:*

*:8197:*

69.184.68.202

208.134.161.154

69.187.116.71

208.134.161.245

23.53.167.171

23.57.77.60

208.134.161.75

208.134.161.212

208.134.161.78

69.184.69.88

208.134.161.247

199.105.182.36


Best Practice : 


The Solutions is only for Windows OS App Profile due to MacOS App Profile does not have Source Port-Based Bypasses. Require to follow the guide above accordingly.


Summary : 

 The solutions is only for Bloomberg Client access from dedicated lease line network