SCCM+CMG with Z scaler

Bhaskar Saxena 1 Reputation point
2020-09-14T18:33:49.65+00:00

We have a environment where we have SCCM and have been able to setup CMG however we are looking for traffic redirection for below scenarios.

Scenario 1: Users on VPN (Legacy VPN without split tunneling)
We want to redirect traffic of those users to Onprem for app/ updates/OS

Scenario 2: Users on Zscaler we want to utilize CMG for App deployment and for patches it should get it from CMG.

Now issue is we have Boundary defined as AD sites. is there any way i can redirect Legacy VPN solution traffic to OnPrem and ZPA traffic to CMG. is there any boundary i can define which can do redirection based on Network type (Legacy VPN and ZPA) understand ZPA works on RFC1918 ranges and RFC6598 subnet.

Microsoft Configuration Manager Application
Microsoft Configuration Manager Application
Microsoft Configuration Manager: An integrated solution for for managing large groups of personal computers and servers.Application: A computer program designed to carry out a specific task other than one relating to the operation of the computer itself, typically to be used by end users.
467 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Fiona Yan-MSFT 2,311 Reputation points
    2020-09-15T09:26:40.043+00:00

    @Bhaskar Saxena

    According to my understanding,our scenario solution is achievable without using boundary.
    Normally, when our client wants to get the location by querying our DC:
    If the DC reply the client , our environment will in scenario 1:our users on VPN.
    If the DC still does not reply to the client after several attempts to connect, our environment will search for the Internet tunnel and then we will in Scenario 2: Users on Zscaler or CMG.


    If the response is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments