Video · Feature Demo

Which Zscaler Firewall Rule Applies?

The overview shows the number of open conflicts and their distribution across critical cases, shadowed rules and redundant rules. Filters let us switch between open, critical, high-priority, shadowed and already processed findings.

2 min DE/EN/FR/NL/ES Published on August 29, 2026
Which Zscaler Firewall Rule Applies?

Demo run in our live demo with sample data. Times and steps come from the run shown, not a benchmark measurement.

ProblemConflict Analyzer shows where ZIA firewall rules contradict, shadow or unnecessarily duplicate each other before they create hard-to-explain operational behavior.
Admin TaskConflict Analyzer replaces risky trial and error with explainable analysis: rules are never reordered on their own, and human approval always stays in the loop.
Solution ShownThe overview shows the number of open conflicts and their distribution across critical cases, shadowed rules and redundant rules. Filters let us switch between open, critical, high-priority, shadowed and already processed findings.

Note: in the current CentaurNexus interface this feature is called "Policy Conflict Review". This video and page use its established name, Conflict Analyzer.

Chapters

  1. 00:00Overview
  2. 00:33Workflow
  3. 01:14Details and evidence
  4. 01:37Value for teams
Show transcript+
  1. 00:06

    Conflict Analyzer shows where ZIA firewall rules contradict, shadow or unnecessarily duplicate each other before they create hard-to-explain operational behavior.

  2. 00:16

    The overview shows the number of open conflicts and their distribution across critical cases, shadowed rules and redundant rules.

  3. 00:26

    Filters let us switch between open, critical, high-priority, shadowed and already processed findings.

  4. 00:33

    We open one conflict. CentaurNexus compares rule A and rule B by position, name and action and explains how their interaction should be assessed.

  5. 00:45

    The recommendation remains analytical. CentaurNexus never reorders or combines rules automatically. The responsible person decides which single change should be reviewed and, if appropriate, submitted through the controlled change process.

  6. 01:00

    The What-If simulation also checks a planned allow or block rule. Target and priority are enough to reveal the effective decision, earlier matching rules and possible conflicts.

  7. 01:14

    If the NSS feed is unavailable, the interface clearly separates reliable structural findings from unknown usage data. Missing data is never presented as an all-clear.

  8. 01:27

    Administration understands ordering effects before making a change. Security prioritizes critical conflicts by transparent criteria. Reviewers retain the decision context.

  9. 01:37

    Conflict Analyzer replaces risky trial and error with explainable analysis: rules are never reordered on their own, and human approval always stays in the loop.

This page answers

  • which Zscaler firewall rule applies
  • ZIA firewall rule not working
  • find Zscaler policy conflict
  • Zscaler firewall rule order
  • Zscaler shadowed rules
  • redundant Zscaler rules
  • Zscaler policy what if