Traffic coming through the Zscaler service will connect to the Internet from Zscaler IP address ranges. If you have need for IP whitelisting, we have methods by which that can be done. If you don’t need to scan this traffic, then you can also bypass via PAC. Otherwise the easiest is to provide the 3rd party on the other side the Zscaler range & enable MFA. If they don’t want to use the range from us, we can also use a VZEN (onsite VM) through which to pass traffic to ensure business policy enforcement & security protection, which as it sits on your network has your IP address.