ms.service: global-secure-access
ms.subservice: entra-private-access
ms.topic: how-to
ms.date: 04/10/2025
ms.author: kenwith
ms.reviewer: ashishj
ai-usage: ai-assisted
- You enabled the Microsoft Entra Private Access forwarding profile.
- The latest version of the Microsoft Entra Private Access connector is installed on a Windows server that has access to your domain controllers.
- The latest version of the Global Secure Access client. For more information on the client, see [Global Secure Access clients](concept-clients.md).
### Publish resources for use with single sign-on
To test single sign-on, create a new enterprise application that publishes a file share. Using an enterprise application to publish your file share lets you assign a Conditional Access policy to the resource and enforce extra security controls, such as multifactor authentication.
|88 |User Datagram Protocol (UDP) / Transmission Control Protocol (TCP) |Kerberos |
|123 |UDP |Network Time Protocol (NTP) |
|135 |UDP/TCP |Domain controller to domain controller and client to domain controller operations |
|138 |UDP |File replication service between domain controllers |
|139 |TCP |File replication service between domain controllers |
|389 |UDP |DC locator |
|445 |UDP/TCP |Replication, User and Computer Authentication, Group Policy |
ms.service: global-secure-access
ms.subservice: entra-private-access
ms.topic: how-to
ms.date: 12/9/2025
ms.author: kenwith
ms.reviewer: ashishj
ai-usage: ai-assisted
- You enabled the Microsoft Entra Private Access forwarding profile.
- The latest version of the Microsoft Entra Private Access connector is installed on a Windows server that has access to your domain controllers.
- The latest version of the Global Secure Access client. For more information on the client, see [Global Secure Access clients](concept-clients.md).
- Servers running Active Directory have a supported version of Windows Server installed.
### Publish resources for use with single sign-on
To test single sign-on, create a new enterprise application that publishes a file share. Using an enterprise application to publish your file share lets you assign a Conditional Access policy to the resource and enforce extra security controls, such as multifactor authentication.
|88 |User Datagram Protocol (UDP) / Transmission Control Protocol (TCP) |Kerberos |
|123 |UDP |Network Time Protocol (NTP) |
|135 |UDP/TCP |Domain controller to domain controller and client to domain controller operations |
|389 |UDP/TCP |DC locator |
|445 |UDP/TCP |Replication, User and Computer Authentication, Group Policy |
|464 |UDP/TCP |Password Change Request |