How Z-App forwards non http and https traffic to Zen


I am trying to understand the functionality of traffic forwarding via Z-App.
How the non http and https traffic are processed (Application not using web based traffic).
How the Ztunnel working with Z-App is it similar to IPsec or GRE tunnel?
What happens when Microsoft related traffic with packet of higher size than MTU value is floated.
Does it gets dropped or this passes without any issue as Microsoft recommends do not fragment bit set.


