Secure Internet and SaaS Access (ZIA)
Firewall Data Types and Filters
When working with Firewall data types and filters in Zscaler, there are two primary ways to define the Firewall traffic information you want to analyze:
Dashboard or Report Widget – Used for visualizing data through widgets in dashboards or reports.
Insights Page – Used for analyzing charts and trends in traffic.
To learn more about analyzing traffic through Insights, refer to Analyzing Traffic Using Insights.

Working with Firewall Data Types in Dashboards and Reports
When adding or editing a widget in a dashboard or report and selecting Firewall in the Widget Settings dialog, you can:
Choose a data type from the Data Type menu.
Apply filters from the Add Filter menu.

Working with Firewall Data Types in Insights
On the Analytics > Firewall Insights page:
Select a data type from the menu above the chart.
Apply filters from the Add Filter menu in the left pane.
Data Types and Filters
Certain filters, such as Users, Departments, Locations, and others, allow multiple values to be selected—up to 200 values per filter. You can also include or exclude selected values.
Filter Combinations:
Some filter combinations that don’t appear together in Insights can be used together in Insights Logs.
Example: Department and Location filters do not appear together in Insights, but they do in Insights Logs.
Firewall Data Types in Zscaler
Available on Both Dashboard and Insights Page:
Action
Application Segment
Department
IPS Department
IPS Location
IPS Location Groups
IPS Rule Name
IPS Threat Category
IPS User
Location
Location Group
Location Type
Network Application
Network Service
Overall Traffic
Rule Name
User
Available Only on Firewall Insights Page:
Client Source IP
Client Tunnel IP
Server Destination IP
Threat Name
By understanding and utilizing these Firewall data types and filters effectively, you can gain deeper insights into network traffic patterns and security events within Zscaler.