asn.dev

Autonomous system

AS22616 ZSCALER-SJC1

Business ARIN

IPv4 addresses 495K 418 prefixes
IPv6 prefixes 22 counted as prefixes, not addresses
Countries 1 mostly US
Flagged prefixes 112 see address space

Summary

Zscaler, Inc.

United States · AI-generated

security sase proxy

Zscaler's ZSCALER-SJC1 network — one of the company's busiest enforcement

ASNs, at its San Jose region. Zscaler operates a global cloud security platform

(SASE / Secure Web Gateway) that enterprise traffic is routed through on its

way to the internet.

What it's used for

  • Inspecting and filtering outbound web traffic for corporate customers (Zscaler Internet Access) from cloud enforcement nodes worldwide.
  • Zero-trust access to private apps (Zscaler Private Access).

Notable

  • An IP in Zscaler's space is typically a security proxy egress, not a datacenter server or an end user's own address — the real user sits behind it inside a corporate tenant.
  • The node name hints at the user's region. Zscaler routes each user to their nearest enforcement node, so an active egress's location roughly tracks where the traffic originates. This SJC1 (San Jose) block is one of Zscaler's busiest actively-announcing ASNs and generally corresponds to corporate users in western North America (US, Canada, Mexico); the EMEA ASN ([AS62044](https://asn.ipinfo.app/AS62044)) covers Europe / Middle East / Africa. Note that several sibling ASNs below (NEWYORK, ATLANTA, GRX) currently announce no IP space — reserved/placeholder handles, not live egress.
  • Zscaler announces from several ASNs, so 22616 is one of several you may encounter: [AS32921 ZSCALER-NEWYORK](https://asn.ipinfo.app/AS32921), [AS40384 ZSCALER-GRX](https://asn.ipinfo.app/AS40384), [AS53444 ZSCALER-SJC](https://asn.ipinfo.app/AS53444), [AS53813 ZSCALER-INC](https://asn.ipinfo.app/AS53813), [AS55242 ZSCALER-ATLANTA](https://asn.ipinfo.app/AS55242), [AS62044 ZSCALER-EMEA](https://asn.ipinfo.app/AS62044), and [AS62907 ZSCALER-CORP](https://asn.ipinfo.app/AS62907).

Interesting

  • Because so many enterprises route through Zscaler, its egress IPs can appear in threat feeds purely due to volume — one shared egress carries thousands of distinct users.

This description is AI-generated, best-effort context — not authoritative, and provided without any guarantee of accuracy. Source, and how to suggest an edit.

Address space

Summary

Full explorer
CountryNamePrefixes
USUnited States of America440

Registry

Allocation record

via ARIN RDAP
Registry
ARIN
Handle
AS22616
Registry name
ZSCALER-SJC1
Registrant
ZSCALER, INC.
Abuse contact
poc-abuse@zscaler.com
Registered
2014-05-28
Last changed
2014-05-28
Status
active

Reputation

Classification and threat

Business Corporate network, or multi-tenant SASE egress carrying staff browsing.

No IC3 indicators Nothing from the FBI IC3 feed.

Threat data is alpha. Absence of an indicator is not evidence of good behaviour, only of absence from this one feed.

Elsewhere

Cross-check