Microsoft Entra Private Access

Gsa Deployment Guide Private Access

In brief

1. Create end user communications to set expectations and provide an escalation path.

Documentation change

  1. Create end user communications to set expectations and provide an escalation path.
  2. Create a roll-back plan that defines the circumstances and procedures for when you remove Global Secure Access client from a user device or disable the traffic forwarding profile.
  1. Create a Microsoft Entra group that includes your pilot users.
  1. Create a Microsoft Entra group that includes your pilot users.
  1. Enable the Microsoft Entra Private Access traffic forwarding profile and assign your pilot group. Assign users and groups to traffic forwarding profiles.
  2. Provision servers or virtual machines that have line of sight access to your applications to function as connectors, providing outbound connectivity to applications for your users. Consider load balancing scenarios and capacity requirements for acceptable performance. Configure connectors for Microsoft Entra Private Access on each connector machine.
  3. If you have an inventory of enterprise applications, configure per-app access using Global Secure Access applications. If not, configure Quick Access for Global Secure Access.