How does zscaler private access work from end user perspective step by step

Hi colleagues,
Please could someone share how step by step zscaler client connect to zpa service and work in background step by step.
My understanding is below.

1.Zcc client authentication.
2.Zcc app profile
3.Zcc forwarding profile
4.Tunnel established to ZPA service edge
5.User access application
6.ZPA Application segment policy check
7.ZPA forwarding policy evaluation to see bypass or forward to ZPA
8.ZPA Access policy to allow application
9. ZPA time out policy to allow or terminate session .
10. Keep alive configuration on aplication segment.
11. Session close if application access not required based on timeout policy.

Thanks to please please in understanding same if any have information on same.