Microsoft Entra Global Secure Access
Security

Protect enterprise generative AI apps with prompt injection protection

In brief

The AI prompt injection protection documentation now explains that TLS inspection can use either a Microsoft-managed certificate or an administrator-provided certificate before configuring TLS inspection policies.

What Entra admins need to know

Administrators have an additional documented certificate option when setting up TLS inspection.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

To configure Prompt Injection Protection for your organization, complete the following steps:

  1. Enable the Internet Access traffic forwarding profile and configure the appropriate user assignments.
  2. Configure TLS inspection with either a Microsoft-managed certificate or your own certificate, and then configure TLS inspection policies.
  3. Install and configure the Global Secure Access client on user devices. Follow the steps in Install the Global Secure Access client for Microsoft Windows.
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…