Zero trust client access to application

Hello, I have enrolled a device to zero trust.
I have a working application that has currently one policy from specific IP access.
how can I set the the enrolled device to access that application when connecting with the 1.1.1.1 app ?

I would also be very interested in that.
Thanks in advance.