Event banner
Introducing Microsoft Entra Private Access
Event details
Microsoft Entra Private Access helps secure access to all private apps and resources, for users anywhere, with an identity-centric Zero Trust Network Access (ZTNA) solution. Join us to learn how this solution can help you remove the risk and operational complexity of legacy virtual private networks (VPNs) while boosting user productivity and lowering cost. This event takes what we announced at Reimagine secure access with Microsoft Entra on July 11th and goes further into the technical details you need to get started today!
Once we’ve walked you through some demos and details, we’ll switch to an open Ask Microsoft Anything (AMA) format to answer all your questions about Microsoft Entra Private Access and Internet Access!
This session is part of the Microsoft Entra Tech Accelerator. RSVP for event reminders, add it to your calendar, and post your questions and comments below! This session will also be recorded and available on demand shortly after conclusion of the live event. |
While you wait, read Identity Management: A Foundation for Zero Trust Security to learn how a modern identity management solution can provide a strong foundation for your overall security strategy.
106 Comments
- Manoj430Copper Contributor
Can private access override a firewall policy?
- Jeevan_Bisht
Microsoft
All connections are outbound, and our services is designed to not have admins to make any changes to the firewall rules. - Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 37:00.
- Richard_HicksCopper ContributorCan I use the same application proxy connector for both web and non-web applications?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 43:00.
- Ian_Parramore
Microsoft
Yes, as long as you're using a Connector version that supports Private Access you use this for both Application Proxy and Private Access.- Richard_HicksCopper ContributorExcellent. Thanks, Ian!
- Richard_HicksCopper ContributorCan I access IPv6 resources over the tunnel? And is the global SSE available via IPv6?
- tdetzner
Microsoft
IPv6 support is part of our roadmap plan. We will share more as we progress.- Richard_HicksCopper ContributorThanks, Thomas. I look forward to hearing more in the future. 🙂
- sarthakBrass ContributorDoes the agent create a single DTLS tunnel, or they are micro tunnels created for each session?
- Anupma_SharmaFormer EmployeeWe use gRPC (not DTLS) for client tunnels and are looking to support UDP as a transport for gRPC in the future. Client tunnels are multi-dimensional for best resiliency. We run multiple micro tunnels to multiple edge rings to provide maximum protection against failures at an individual tunnel level as well as the broader environment/platform level to our enterprise customers.
- sarthakBrass Contributorwhy gRPC? , doesn't it have a larger processing overhead
- tdetzner
Microsoft
The client will create dedicated tunnels to the respective endpoints (M365, Private, Internet) and inside those tunnels it will create channels to tunnel the payload traffic- Richard_HicksCopper ContributorDoes the GSA client use DTLS? Or standard TLS?
- bdm564Copper ContributorDoes client DNS resolution work over Private Internet Access? For example, an SMB mapped drive connection that points to an internal hostname/FQDN?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 50:00.
- Jeevan_Bisht
Microsoft
It's not part of the current public preview, but it being worked today and planned as part of the General Availability.
- KshitijM1988Copper ContributorComing up with a unified client for Defender for Endpoint + Global Access will be game changer ! Any rough ETA when it will be in preview mode ?
- Ian_Parramore
Microsoft
No timeline we're able to share at this point.
- FurgieCopper ContributorIs it safe to use in production while in preview?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 30:00.
- Jeevan_Bisht
Microsoft
We document what is means to be in preview https://azure.microsoft.com/en-us/support/legal/preview-supplemental-terms/ - SamuelRoachIron ContributorThis may be more of a business decision re risk appetite.
- tpeckmanCopper ContributorIs the Private Access solution going to be FIPS 140-2 compliant?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 25:00.
- Jeevan_Bisht
Microsoft
In general, all standards for Microsoft services will be applicable at General Availability.
- dsghiIron ContributorIf we're trying the public preview items and have issues (we couldn't get the agent to connect properly), where should we go to report issues/find troubleshooting or support suggestions?
- Gustavo_Mauler
Microsoft
To chat with our support engineers, please submit a ticket https://aka.ms/AzureSupport - Char_CheesmanBronze Contributor
Thanks for participating in today's AMA: Microsoft Entra Internet Access and Microsoft Entra Private Access! For reference, the panel covered this topic at around 32:00.
- Jeevan_Bisht
Microsoft
You should be able to use our standard support process to help you get unblocked and provide feedback.
- En111_Iron ContributorWill one make it easier to connect to a linux-only azure environment? Competitors only deploy proxy connectors on Linux vm or lighter
- tdetzner
Microsoft
Linux support is part of our roadmap plan and we plan to provide a client for Linux. We will share more as we progress.- Ian_Parramore
Microsoft
We will also continue to evaluate the platform requirements for Private Access and Application Proxy connectors.