If they only check for ISP they either get ‘ZScaler Brussels’ or ‘ZScaler Switzerland GmbH’, depending which DB they ask.
Would they instead check for countr/region/city both DB would give the correct location.
I’m seeing this every now and then around the globe, but so far could not find a real solution (short of sending such traffic through SIPA if/when i have one which ‘satisfies’ the externals access list)
One example similar to yours i had recently was ‘government websites in egypt’.
They (not all but a lot which we must use) demand ‘Source IP must be from within Egypt’ → as there is no ZS-CENR in egypt the only way was to setup a SIPA instance in one of our offices there and route *.gov.eg via that SIPA.