Zscaler logo Zscaler IP Ranges

Download current IP ranges (CIDRs) for Zscaler cloud infrastructure.

Provider Information

Official Website
https://zscaler.com
Total IP Ranges
577
Last Updated
Total Downloads
489

Download Options

Choose your preferred format. All downloads are permalinks that always provide the latest data.

Usage Examples - Blocking Zscaler IPs

Download the IP ranges

# Download with curl
curl -O https://cloud-ip-ranges.com/download/zscaler.txt

# Or download with wget
wget https://cloud-ip-ranges.com/download/zscaler.txt

Block with iptables (Linux firewall)

# Download and block Zscaler IPs with iptables
wget -O zscaler_ips.txt https://cloud-ip-ranges.com/download/zscaler.txt
while read ip; do
  iptables -A INPUT -s $ip -j DROP
  iptables -A OUTPUT -d $ip -j DROP
done < zscaler_ips.txt

Block with UFW (Ubuntu/Debian firewall)

# Download and block Zscaler IPs with UFW
wget -O zscaler_ips.txt https://cloud-ip-ranges.com/download/zscaler.txt
while read ip; do
  ufw deny from $ip
  ufw deny to $ip
done < zscaler_ips.txt

Block with fail2ban (intrusion prevention)

# Create fail2ban filter for Zscaler
sudo tee /etc/fail2ban/filter.d/zscaler-block.conf << EOF
[Definition]
failregex = ^.*$
ignoreregex =
EOF

# Create jail configuration
sudo tee /etc/fail2ban/jail.d/zscaler-block.conf << EOF
[zscaler-block]
enabled = true
filter = zscaler-block
action = iptables-allports[name=zscaler]
logpath = /tmp/zscaler_ips.txt
findtime = 1
bantime = -1
maxretry = 1
EOF

# Download IP list and restart fail2ban
wget -O /tmp/zscaler_ips.txt https://cloud-ip-ranges.com/download/zscaler.txt
sudo systemctl restart fail2ban

Block with pfSense/OPNsense (FreeBSD firewall)

# Create alias table for Zscaler IPs
# 1. Download the IP list
wget -O zscaler_ips.txt https://cloud-ip-ranges.com/download/zscaler.txt

# 2. In pfSense/OPNsense web interface:
# - Go to Firewall > Aliases
# - Create new alias named "ZSCALER_BLOCK"
# - Type: Network(s)
# - Import the downloaded file
#
# 3. Create firewall rule:
# - Go to Firewall > Rules > WAN
# - Add rule: Action=Block, Source=ZSCALER_BLOCK

About Zscaler IP Ranges

These IP ranges are sourced directly from Zscaler's official feeds and are updated regularly to ensure accuracy. The data includes IPv4 and IPv6 ranges used by Zscaler's infrastructure worldwide. Last update was 43 minutes ago.