An administrator needs to SSL inspect all traffic but one specific URL category. The administrator decides to create two policies, one to inspect all traffic and another one to bypass the specific category.
What is the logical sequence in which they have to appear in the list?
A. Both policies are incompatible, so it is not possible to have them together.
B. First the policy for the exception Category, then further down the list the policy for the generic "inspect all."
C. First the policy for the generic "inspect all", then further down the list the policy for the exception Category.
D. All policies both generic and specific will be evaluated so no specific order is required.
Explanation:
When creating SSL inspection policies, the exception policy for the specific URL category must appear first in the policy list, followed by the more generic "inspect all" policy further down. Zscaler evaluates policies in order, so placing the exception first ensures that traffic matching that category bypasses inspection before the generic policy is applied.
The study guide emphasizes the importance of policy order to ensure correct application of exceptions and general rules.