As an example, the following scenario will be considered: company from Turkey expects that the WSS Agents will be connecting from GTRAN (Ankara, Turkey) localization zone.
The observation is the following:
WSS Agent
GTRAN is the Localization Zone linked to GCHZU (Zurich, Switzerland) compute region (POP). As explained in the KB article: Localization Zones - Provide an improved user experience by localizing content requests for countries where there is no Cloud SWG compute POP.
When the WSS Agent connects, CTC consider the current egress IP of the machine. If that is coming from within the IP from the Turkey (in this example), it will then connect to GTRAN. However, if the IP is not geolocalized in Turkey, then it will connect to GCHZU.
To ensure where the WSS Agent is connecting to, go to https://pod.threatpulse.com and click on "more". This two fields will show the exact connection of the agents:
If the connection is detected from the Turkish IP, then "WSS Egress Country" will show "TR" country code. And then, the WSS Egress IP will show the address from the GTRAN Egress IP range which is 199.247.32.64/27:
If the connection is detected outside the Turkish IP, then "WSS Egress Country" will show different country code ("US" in this example). And then, the "WSS Egress IP" will display an address from GCHZU IP range (148.64.11.0/24 or 35.216.128.144/28):
see How WSS Agent Connects to Cloud SWG (Web Security Service) for more details on how CTC works
see Cloud SWG (formerly WSS) Ingress and Egress IP addresses for the list of the available POPs