---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure access to APIs

# Configure access to Zscaler Internet Access APIs {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Configure access to the Zscaler Internet Access server to authenticate
the secure connection between the ServiceNow AI Platform instance and the Zscaler server.

## Before you begin

Role required: Zscaler Internet Access admin  
ServiceNow supports the following API role configurations for the Zscaler integration.

* Service Admin Role:

  Create the API key using a role with Service Admin privileges.

  This configuration provides full functionality and is recommended for environments without strict
  role-segregation requirements.
* Least-Privilege Role (Supported):

  For users who require reduced privilege, ServiceNow supports a least-privilege configuration.  
  Create a custom role with the following permissions:
  * Security: Custom
  * Malware Protection, Sandbox, \& Advanced Threat Protection: Full
  {#configure-zscaler-api-access__ul_ddj_zwg_23c}

  When configured with these permissions, the integration runs as expected.
{#configure-zscaler-api-access__ul_mvd_gfg_23c}

## About this task

After Zscaler enables your API subscription for your organization's
cloud service, it is available in the Zscaler Internet Access API key
management page with the base URL. Your organization can only have one API key or
token. Delete the existing key or token before you add a new one.  
The base URL for the API is `${Cloud_Name}/api/v1`. Check the Zscaler cloud name that was provisioned for your organization and use it to replace `{Cloud_Name}` in the base URI. Some examples of the base URL are:

* example.zscalerbeta.net
* example.zscalerone.net
* example.zscalertwo.net
* example.zscaler.net
* example.zscloud.net
{#configure-zscaler-api-access__ul_ffq_mwk_vpb}  
Note:  
For more information about the Zscaler Internet Access administration portal, see the [Zscaler API key management documentation](https://help.zscaler.com/zia/about-api-key-management) and the [Zscaler Portal
documentation](https://help.zscaler.com/cloud-connector/about-cloud-connector-portal).

## Procedure

1. Log in as an admin to the Zscaler Internet Access administration portal.
2. Navigate to AdministrationCloud Service API Security.
3. Select Add API Key.  
   If you do not see the Add API Key option, delete the existing key.  
   The new API key is immediately valid and is displayed in the tab.

## Result

You have retrieved the base URL and the API key to configure access to Zscaler from the ServiceNow AI Platform instance.

*[\>]: and then


