Cloud & Branch Connector
Release Upgrade Summary (2022)
This article provides a summary of all new features and enhancements for Zscaler Cloud Connector.
The following service updates were deployed to connector.zscaler.net on the following dates.
- Feature Available
GitHub Migration for Zscaler Cloud Connector Deployment Templates
Deployment Templates for Zscaler Cloud Connector have migrated from the Zscaler Cloud Connector Portal to GitHub. To learn more, see Deployment Templates for Zscaler Cloud Connector.
- Feature Available
DNS Resolutions for Zscaler Cloud Connector
Zscaler Cloud Connector supports the ability to forward workload-initiated DNS requests to custom DNS resolvers and cloud-native DNS servers, such as Amazon Web Services (AWS) Route 53 DNS Server or Microsoft Azure DNS Server. This enables ZPA application domains to be resolved by Cloud Connectors, while non-ZPA domains are forwarded to the target DNS resolvers.
To learn more, see Handling DNS Resolutions for Zscaler Cloud Connector.
Update to Tunnel Encryption
The Zscaler Cloud Connector software has been updated to allow users to select between DTLS or Unencrypted options for the tunnel encryption mode. This is the encryption mode used when forwarding your Cloud Connector’s traffic to ZIA. The ZIA tunnel encryption can be selected from the Edit Connectors window. To use this feature, you must have a Tunnel Encryption subscription.
To learn more, see About Cloud Connector Groups, About Branch and Cloud Connector Upgrades, and Editing Cloud Connectors.
- Feature Available
Accelerated Networking in the Azure Marketplace
Accelerated networking is enabled by default when deploying Zscaler Cloud Connector as a virtual machine (VM) with Microsoft Azure using Terraform scripts or the Azure Marketplace solution. To learn more, see Deploying Cloud Connector with Microsoft Azure and About Cloud Automation Scripts.
- Feature Available
API Key Exclusivity
The API key is now exclusive to the Zscaler Cloud Connector Portal and is no longer shared with the Zscaler Internet Access (ZIA) Admin Portal. During this transition, both the ZIA Admin Portal and the Zscaler Cloud Connector Portal start with the same API key. Users can then change each API key separately from the respective portals. To learn more, see About API Key Management and Managing Organization API Keys.
Multiple Language Support
With the support of multiple languages, admins can display the Zscaler Cloud Connector Portal in the following languages: English, French, German, Japanese, Spanish, or Simplified Chinese.
To learn more, see Customizing Your Admin Account Settings.
- Feature Available
Gateway Load Balancer Support in AWS
You can deploy Zscaler Cloud Connectors with the Gateway Load Balancer (GWLB) from Amazon Web Services (AWS). GWLB is a combination of network gateway and load balancer that enables horizontal scalability and fault tolerance for Cloud Connector deployments. Admins can deploy GWLB with Zscaler Cloud Connector by using the new GWLB templates for CloudFormation and configurations for Terraform. To learn more, see About Cloud Automation Scripts and Deploying Cloud Connector with Amazon Web Services.
- Feature Available
Update to Cloud Connector Admins Location Scope
Admins can now select None as their Location scope when Allow for Creation of New Locations is enabled in the Add Cloud Connector Admin window. This allows admins to set their scope without creating a location first. After the new location is created, the new location is automatically added to their scope.
To learn more, see Adding Cloud Connector Admins.
- Feature Available
Advanced Settings
You can now enable the option to import your AWS Account ID and Azure Subscription ID into the Zscaler Cloud Connector Portal from the Advanced Settings page. To learn more, see About Advanced Settings.
Update to Scheduled Upgrades
You can now select a 2-hour window of time to schedule your upgrade for your Cloud or Branch Connector(s).
To learn more, see About Branch and Cloud Connector Groups, About Branch and Cloud Connector Upgrades, and Editing Connectors.
Update to Tunnel Encryption
You can now select DTLS or Unencrypted for the tunnel encryption mode to be used when forwarding your connector's traffic to ZIA. The ZIA Tunnel Mode is located in the View Connectors window.
To learn more, see About Branch and Cloud Connector Groups, About Branch and Cloud Connector Upgrades, and Editing Connectors.
- Feature Available
Update to Add Cloud Connector Role: Addition of Template Permissions
You can now control an admin's access to Templates (Location & Provisioning) in the Add Cloud Connector Role window. To learn more, see Adding Cloud Connector Roles.