To use the Search function, enter either the user name or email address in the Search box and click Search. And we have some customers who go with just ZIA or ZPA. Inbound Bytes: Use this filter to limit the logs based on the number of bytes sent from the server to the client. And really, that will give us [Inaudible] TAM and further growth that we are striving for. We are the largest in-line security cloud, and no one comes close to us. With a large market opportunity and customers increasingly adopting the broader platform, we'll continue to make disciplined investments to position us for long-term growth. And as I had said, even two or three years ago, it's a matter of time when every customer buys ZIA, ZPA, ZDX for every employee. I would like to inform you that we'll be attending the following upcoming events in June: Bank of America Global Tech Conference in San Francisco on June 7th, Cantor's Security and Infrastructure Conference on June 9th. Hi, guys. Thank you, Jay. Stock Advisor list price is $199 per year. Zscaler NSS To stream Zscaler logs to Sentinel, you will need to have deployed Zscaler's Nanolog Streaming Service (NSS) VM and configured it in the ZIA admin portal. Number two, we had to refine our business value case, CFO-ready case studies a lot more. Zscaler (ZS) Q3 2023 Earnings Call Transcript | The Motley Fool So, I'm just trying to figure out like what changed for you guys this quarter relative to the past two quarters. This customer said it is the first time they have seen a security vendor that understands their business needs and aligns its solution to address them. Returns as of 06/03/2023. You can remove all items from the list (Remove All) or only items from a specific page (Remove Page). Verify that the state of the NSS Server is healthy. Awesome. Now, we had to do RAMP deals more frequently, which is kind of to meet their timing of the budgets and the like. To get assistance or support for your product issue, please open a support ticket. We are entering Q4 with a record pipeline, and our customer engagements remain strong. Zscaler Nanolog Streaming Service - IBM And also, you know, we have expanded our vision far beyond just SSE for users. DNAT Policy Action: Use this filter to limit the logs to traffic on which the service performed destination NAT and redirected traffic to specific IP addresses and optionally, ports. Thanks for taking the question. Their incumbent CASB provider could not scale to even 5% of the employees when T&S inspection was turned on. admin.zscaler.com admin.zscalerone.net admin.zscalertwo.net admin.zscalerthree.net admin.zscalerbeta.net admin.zscloud.net Zscaler Private Access. Let me highlight two such deals. And then the customer is saying, what's your track record? Theyjust revealed what they believe are thetenbest stocksfor investors to buy right now and Zscalerwasn't one of them! RAMP deals started coming in, you know, a few years ago. It was natural for us to expand beyond U.S. And what we've done is looked at the West-friendly nations and NATO-friendly nations who depend upon FedRAMP certifications for protecting their federal governments. He was a driving force in scaling the AI-powered customer engagement platform at Salesforce, which is critical to the next phase of our AI journey. And our next question comes from the line of Shrenik Kothari from Baird. As these deals show, customers are embracing our expanded platform, including our two emerging product pillars: ZDX for digital user experience and Zscaler for Workloads. So, I was wondering, what do you think is sort of driving that disconnect between the strong numbers put up in the quarter and then the general feedback from the channel we've heard recently? Thank you. If another user without any Zscaler access logon to Windows and types https://ip.zscaler.com from the browser, he will see the user with internet access stills logged to Zscaler. Using AI, I believe Zscaler has the opportunity to predict most of today's ransomware and other sophisticated attacks on our customers. Review discovered devices to locate devices that you want to onboard. Careers Partners Support. tabcontent[i].style.display = "none"; That's still the case. Yeah. If you select one of these options, a confirmation window will appear. Cybersecurity was a top priority as their IP in software development and manufacturing was being actively targeted by nation-state actors and hackers. Choose Disable to display the user names. It's nice to see that. So, we have a very strong presence in a number of states at statewide level. If I came and told you that in one year I'm going to build the best firewall, well, it'll be hard for me to say that because I can't say -- make statements like that, OK? Strong verticals were federal, financial services, healthcare, and transportation. Our customer success team, our TAMs are doing a great job. And customers that have bought ZIA, ZPA, and ZDX is more than 25% of our total customers. You are the judge. Zscaler with 300 . So, it is not unnatural for us to see the competition trying to come and say, maybe I can get into this space. tablinks[i].className = tablinks[i].className.replace(" active", ""); Making the world smarter, happier, and richer. Customers are expanding their commitments with us, from a targeted use case to a much broader platform-centric approach. Zscaler. And I'd love to get a sense, when a new customer comes in, any way to think about the mix of new customers that are taking Zscaler for Users from the start? And our next question comes from the line of Adam Borg from Stifel. And so, customers basically want to go with a proven vendor who knows how to operate and run and manage such a massive cloud. Zscaler Splunk App | Splunkbase Yeah. The Zscaler was chosen over carefully vendor because of our best-in-class capabilities in DLP, CASB, browser isolation, SSPM, and SaaS supply chain security. Threat Name: Use this filter to limit the logs to specific threat names. So, this quarter was, as people have said and you said, you pre-announced it, it was really a strong quarter. Jay, I wanted to ask you about the U.S. federal opportunity. The current RPO is approximately 50% of the total RPO. You know, from our perspective, you know, when you take a look at the market size that we talked about at our Analysts Day a few years ago, it's a $72 billion market for our addressable market. Client Public IP Addresses: Use this filter to limit the logs based on a clients public IP address. Thanks for taking my question here. A few quarters ago, we noted that customers were increasingly scrutinizing their projects and budgets due to macro conditions. And our next question comes from the line of John DiFucci from Guggenheim Securities. String search is not case-sensitive. You know, it's a race with bad guys. No. } [Guide] Deploy Zscaler NSS in Azure - Resources - Zenith But if you got good product offerings that are highly differentiated and there's a need for it because customers do want to save money and better cybersecurity, that's really what's positioning us well. From a capacity perspective, we're in good shape. I'll take it. For an overview of ASIM parsers refer to the parsers overview. IPS Reset: Packets that were reset due to IPS policy. We focus on innovation. We plan to launch a number of innovations, including many for AI-ML at Zenith Live, our annual cloud summit, in mid-June in Las Vegas. If you take a look at basically, you know, the duration, you know, the billings duration, you know, our growth rate was 44% short term. Let me highlight one such platform deal in the quarter. So, is it impacting our performance? You can enter: An IP address (for example, 198.51.100.100), A range of IP addresses (for example, 192.0.2.1-192.0.2.10), An IP address with a netmask (for example, 203.0.113.0/24). Investigate cloud apps discovered on your network. Blocking of WeChat with Advance Cloud Firewall - Zenith Your question, please. For aggregated sessions, this is the client destination port of the last session in the aggregate. If you work with both Defender for Cloud Apps and Zscaler, you can integrate the two products to enhance your security Cloud Discovery experience. Collected using the AMA or Log Analytics Agent based IIS connectors. One moment for our next question. ZDX, our digital experience service, was launched three years ago. There is no limit on the number of users that you can select. Press Enter after each entry, then click Add Items. The internal IP address is available if traffic forwarding is forwarded to the service through a GRE tunnel or from the XFF header. Thanks. Firewall DNS IBM QRadar LEEFformatted logs An installed and configured NSS virtual appliance to stream web logs from your Zscaler devices. To complete these procedures, you must be a member of the Domain Administrators group, or otherwise . Application Segment: A group of applications that are organized together, based upon access type or user privileges. I mean, was it -- I mean, you did talk about larger deals. Not that they were -- you know, they were -- you struggled more in the last two quarters, at least from our measures of new ACV signings. Before you begin Be aware of potential charges Thank you, Bill. And looking at the numbers, it looks like real clean results. Thanks for taking the question. Logs are simply structured data. RAMPs, I would consider the same, you know, quarter over quarter. PDF Zscaler Firewall Data Sheet | Security Service Edge Zscaler NSS Syslog sample message for Firewall logs feeds supported by Zscaler NSS. Select View sample of expected log file.Then select Download sample log to view a sample discovery log, and make sure it matches your logs.. Thank you. Our engagement in cloud marketplaces have gotten much better because we are leveraging the annual commit that's already spent -- annual spend that's already committed to the hyperscalers. So, very happy to see the performance of both. For aggregated sessions, this is the server destination IP address of the last session in the aggregate. Select View sample of expected log file. You can remove all items from the list (Remove All) or only items from a specific page (Remove Page). We now have 400 customers with greater than $1 million in ARR, including over 35 customers exceeding $5 million in ARR. It really seems like you've got a number of good things happening there. Your question, please. We have a disciplined approach to growth. Discounted offers are only available to new members. What's the difference between "standard" and "advanced" Cloud Firewall? Net other income of $13 million. A cabinet-level agency purchased ZIA and ZPA for 110,000 users to cover all of its sub-agencies. After a thorough evaluation, they're standardizing on Zscaler to consolidate multiple point products across the agency and to comply with the president's executive order, which mandates federal agencies to adopt zero-trust principles. Thank you, Brad. Zscaler Internet Access | Elastic docs Over the past few quarters, I observed that analysts and investors often equate ZPA with VPN replacement. Cost basis and return based on previous market day close. Please see our Terms and Conditions for additional details, including our Obligatory Capitalized Disclaimers of Liability. Select a resource or any number of resources to view details on the right-section of the screen. You know, I think everything you mentioned is 100% correct. Z-App -8 Network Error when users log in on Windows 10 I have many times described Zscaler being the in-line business, almost like an ERP application. We are trying to extend our network from our office to the cloud. Thanks for the color on the fiscal '24 margins, but to the extent you can, any color or high-level discussions you can share with us now on how you're thinking about the growth outlook and to what extent is macro playing into that thought process. The proxy sensor is designed to receive these logs and upload them to the same destination as FortiNDR Cloud sensors. In the Microsoft 365 Defender portal, do the following integration steps: Under Cloud Discovery, select Automatic log upload. You can remove all items from the list (Remove All) or only items from a specific page (Remove Page). One moment for our next question. There is no limit on the number of departments that you can select. Great. You know, we do -- I mean, customer advisory board meetings, Jay, we do one like, on average, like one a week I believe. You mentioned on a sequential basis, you saw better-than-normal seasonality. Locations that are deleted after they are selected appear with a strikethrough line. And we're doing well. Where is the TCP port configured on the SpanVA to accept logs? DNAT Destination Name: Use this filter to limit the logs to traffic that was redirected to specific FQDNs after the service performed destination NAT. If you select either of these options, a confirmation window will appear. As we think about fiscal 4Q and fiscal '24, it sounds like you're broadly being pretty conservative around close rates. Countries: Country code that corresponds to the server IP address. For item lists, you can view up to 500 items on a page; filter the list by searching for a word, phrase, or number contained in an item. First off, just wanted to congratulate you all on the great results in what's been a tough environment. Client Source IP Addresses: Use this filter to limit the logs based on a clients private IP address. But overall, a bigger bundle to eliminate a bunch of point products is the trend we are seeing. The list of time zones is derived from the IANA Time Zone database. Thank you. Maybe for Jay, you talked in the script about increasing traction with Zscaler for Users. Architecture, you know, related to, you know, in-line cloud, you know, multitenant architecture not only for users but workloads and IoT, OT, and B2B, you know, that's a vision basically, you know, Zscaler. /* Add Data > Activity in the SNYPR application. On the federal front, as we said, we got early lands and got 12 of 15 agencies. SIEM IP Address: Enter the IP address of the SIEM to which the logs are streamed. And our next question comes from the line of Mike Walkley from Canaccord Genuity. . Moreover, C-level leaders from around the globe are telling me that the technical debt of the legacy network and security point products impedes progress and slows down business operations. IPS Rule Name: Use this filter to limit the logs based on specific rules in your IPS policies. It's because we purpose-built our stuff. A valid license for Microsoft Defender for Cloud Apps, or a valid license for Azure Active Directory Premium P1. Thank you, Saket. I wonder if you could just highlight for us or remind us the timing of when you did your big hires, where you are in the capacity of your sales force, and what the hiring might look like going forward to extend the durability of the growth that you're seeing currently. I want to make sure that our investors, you know, recognize, we feel that we are in a great position to move forward. Zscaler, as a standalone cloud proxy, monitors your organization's traffic enabling you to set policies for blocking transactions. So, very happy with what we're doing, and we'll keep on executing. Excellent, Jay. I guess I'm wondering relative to a few quarters ago, are you feeling incrementally better about controlling your own destiny, your ability to influence sales cycles? Total gross margin of 80.2% compares to 80.4% in the prior quarter and 80.6% in the year-ago quarter. You can remove all items from the list (Remove All) or only items from a specific page (Remove Page). So, do I kind of try to focus too much on some of the comparative campaigns that are kind of trying to spread lies on? These are not firewall logs that cannot often see SSL traffic. Our business value message is resonating with customers. You can specify numbers or ranges. As a reminder, these numbers are all non-GAAP. Really appreciate the question and great job on the billings performance in a tough environment. Collected as Windows events using the Log Analytics Agent (Event table) or Azure Monitor Agent (WindowsEvent table). Zscaler for Users, this bundle was created about a little over a year ago, and we have seen very, very good growth of this combined bundle. And how should I think about the overall mix of Zscaler for Users within the installed base? airplane mode) and reconnect it again, the wechat will . Very few. One moment for our next question. What changed? I think we're focused on building, delivering, keeping our customers happy. Every vendor has logs. We highlighted a number of 100,000-plus user deals. Timezone: By default, this is set to the organization's time zone. So, it is fitting well. I don't. As noted earlier, to account for our convertible notes in EPS, you will need to add back $1.4 million in annual interest expense. I'd like to remind you that today's discussion will contain forward-looking statements, including but not limited to the company's anticipated future revenue, calculated billings, operating performance, gross margin, operating expenses, operating income, net income, free cash flow, dollar-based net retention rate, future hiring decisions, remaining performance obligations, income taxes, earnings per share, our objectives and outlook, our customer response to our products, and our market opportunity. In today's environment, our strategy is to double down on customer success. For each feed, you can configure multiple types of filters. All of the above. This document describes how to configure and troubleshoot Zscaler Internet Access IPSEC peers with the Meraki . And it's being also helped by White House guidelines, zero-trust implementation. Our differentiation is very strong. Great. Direct GMT offsets can also be specified. They can be built. How could this show up? Can you double-click on the opportunity and pipeline ahead and maybe talk just more about your strategy in the public sector more generally, not just fed, but SLED, and maybe international government as well? Given the explosion in ransomware and high-profile data breaches, IT leaders are looking to phase out castle-and-moat security to adopt zero-trust architecture. And then just one quick one from Remo. in the Job Scheduling Information section and select any of the following based on the collection method: Run every 1 minutes for datasources with the collection method as syslog. Remo, you talked a little bit about future lumpiness in dollar-based net retention, I guess, given some large deals that you'll grandfather in, but can you share with us kind of that mix you expect through maybe fiscal '24 of new logo sales versus upsells? We are also starting to close larger deals with our federal government customers as the zero-trust deployments move beyond the initial land deals. Our highly scalable and reliable platform and our highest FedRAMP authorizations for both ZIA and ZPA have been key differentiators in this win. Your question, please. So, this quarter was strong across all areas. Earnings per share in the range of $1.63 to $1.64 assuming approximately 156 million fully diluted shares. So, I think this is not new. Thank you. As we have indicated before, we have a 6x upsell opportunity with our existing customers for protecting their users. I mean, that's how I personally look at it. Note: Refer to the Spotter Query Reference Guide for information on how to write queries in Spotter. Microsoft Sentinel provides the following parsers in the packages deployed from GitHub: ASIM Network Session parsers are available in every workspace. Reported as Security Events (4624, 4625, 4634, and 4647). One moment for our next question. You can remove all items from the list (Remove All) or only items from a specific page (Remove Page). In the right section of the screen, select a resource and click Select Timezone. I mean, CIOs, CXOs, they talk to each other. But when companies try to pivot, it takes a while, and especially pivoting do something that's in-line, multitenancy, figuring out all the cyber threats without slowing things down is hard. For aggregated sessions, this indicates the average session duration. reported by Microsoft 365 Defender for Endpoint, collected using the Microsoft 365 Defender connector. Firewall Insights Logs: Columns | Zscaler For example, you can configure separate feeds for each location or for different policy rules. They are point product. These channel checks will always be misguided, OK? Now, they want to go in the quarterly level to see when the ROI can be done. Server Source IP Addresses: Use this filter to limit the logs to specific server source IP addresses. Shrenik Kothari -- Robert W. Baird and Company -- Analyst. Microsoft Sentinel provides the following out-of-the-box parsers: Deploy the workspace deployed parsers version from the Microsoft Sentinel GitHub repository. However, predicting close rates in any 90-day period has become more challenging in this environment. The Docker Container must be run from a system that is separate from the NSS log server. It's a high-touch sale and working closely with customers and sometimes large SIs, that's how we do business. Remo, do you want to give some more color to it? We made a number of investments in customer success services, technical account managers, partner services, and certification of partners, which together will help our customers move faster toward realizing business value. Each feed is a connection between NSS and your RIN. Zscaler NSS To stream Zscaler logs to MCAS, you will need to have deployed and configured Zscaler's Nanolog Streaming Service (NSS) in the ZIA admin portal - this allows you to stream logs from their logging clusters (called Nanolog) towards a SIEM or product of your choice (in this case, MCAS). Market-beating stocks from our award-winning analyst team. The pioneer with all this is Zscaler, the leader if you take a look at, you know, our penetration into the Fortune 500, which is, you know, 40%; and Global 2000, 30%. Income taxes of $6 million. Anything past this point in time will be deleted from Zscaler servers. Matt Hedberg -- RBC Capital Markets -- Analyst. Requirements 1. Happy customers buy more. The same parsers support multiple sources. This is simply not true. There were no deals of greater than 10 -- no deals greater than $20 million. You will find the reconciliation of GAAP to the non-GAAP financial measures in our earnings release. This is Patrick on for Josh. For more information about Firewall logs, see Adding NSS Feeds for Firewall logs (https://help.zscaler.com/zia/adding-nss-feeds-firewall-logs). Great. For item lists, you can view up to 500 items on a page. Number two, we're actually able to remove a bunch of point products and show ROI, and that actually gives them more incentive to buy more from us. If custom encoding was done for a record, the %s{eedone} field will be YES for that record. Calculated by Time-Weighted Return since 2002. Zscaler VPN Log Forwarder SSO Chronicle UDM Glossary Zscaler Firewall About Zscaler Cloud Firewall enables fast, secure on- and off-network connections and local internet breakouts for all your user traffic, without any hardware or software to manage. The Motley Fool has positions in and recommends Zscaler. For item lists, you can view up to 500 items on a page; filter the list by searching for a word, phrase, or number contained in an item. For the full year fiscal 2023, we expect revenue in the range of $1.591 billion to $1.593 billion or year-over-year growth of approximately 46%, calculated billings in the range of $1.974 billion . 10 stocks we like better thanZscalerWhen our analyst team hasa stock tip, it can pay to listen.