Microsoft SSE (Security Service Edge) as a replacement for SSL VPN

Hello!

What are your thoughts (experience?) on Microsoft’s SSE product?

Has anyone tested the Global Secure Access function to provide remote access to work computers or RDS via RDP? There are some resources online about using this for On-Prem software but haven’t seen anything on Remote Access.

Would appreciate any insight!

Yes, works fine. Though we had to use the full fqdn of the server, not the short name.

Allow the right port and server fqdn in the application

This was with Entra Private Access of course

Entra Private Access via Global Secure Access uses same App Proxy that was used before to enable access to RDS. Plenty of existing guides to see the insides of how it works.

I’m all for it to test, but the limiting factor still stand: the GSA agent is only for Windows and Android. I could get away with no Linux support, but lack of MacOS is saddening, since I can’t just say ‘we will use it, but 20% of user base is left alone’. Until they provide the full suite, it’s just another Early Access feature, that will be behind a paywall sooner than later (looking at you Intune Suite)

Very interested myself.
We’re running into the downsides of Azure App Proxy with RDG and it only really supporting the HTML5 client for pre-auth which means no multi monitor support.

If this is an alternative solution but could achieve full RDG/RemoteApp access via the RDP clients I’d be over the moon and it’d solve a lot of problems for me.