When deploying Netskope Private Access as a ZTNA product, it may not be clear how your enterprise applications work (like ports necessary), and whether there is a reliance on other hosts to make the applications function correctly. App Segment Discovery is a cornerstone for the successful deployment of a ZTNA product.
When configuring App Segment Discovery in a production environment, using a dedicated Publisher for app discovery is recommended.
- Go to Settings > Security Cloud Platform > App Definition and click Private App Segments.
- Click App Segment Discovery.

- Enter these parameters:
- Destination: Enter a Hostname for the DNS-based Private Apps. You can also enter a CIDR or IP addresses for IP-based Private Apps.Publisher: Select the Publisher dedicated for the Private Apps.
Note
The App Segment Discovery feature can now support a limit of up to 500 hosts. For current tenants, the default limit remains at 32. However, beginning with version 123, new tenants will have a default limit of 100 for app discovery hosts. Customers can request increased host limits (up to 500) beyond the current 32 and 100 limits. Contact your Netskope account team for assistance.
User: Enter the user(s) that will access the Private Apps.Status: Enable the toggle.Note
For the App Segment Discovery feature, the maximum number of Publishers that can be configured for a tenant can be increased from 16 (default) to a maximum of 64. To raise this limit, contact Netskope Support or your sales representative.

- Destination: Enter a Hostname for the DNS-based Private Apps. You can also enter a CIDR or IP addresses for IP-based Private Apps.
- Click Save. The App Segment Discovery Status is now green (Enabled) on the App Definition page.
- A confirmation window opens for you to review the changes. After verifying the changes, click Confirm.

- Have users start generating traffic using the Private Apps.
App Segment Discovery in Skope IT for Private Apps
After users generate traffic via Netskope Private Access, on the Private Apps page, click App Segment Discovery, and then click View Discovered App Segments.

Another option is to go to Skope IT > Private App Segments.

This page shows:
- Application Segment Names
- Destinations
- Ports
- Publishers
- Number of users
- Bytes Uploaded
- Bytes Downloaded

