Introducing Microsoft Global Secure Access - No More VPN's!

Поділитися
Вставка
  • Опубліковано 9 чер 2024
  • Microsoft Global Secure Access means we can say goodbye to VPN's and add much more security to our Microsoft 365.
    In this video we'll talk about how the security and network landscape has changed and I'll also give a full demo into Global Secure Access.
    🆓 FREE Facebook Group
    From security to productivity apps to getting the best value from your Microsoft 365 investment, join our Microsoft 365 Mastery Group
    / microsoft365mastery
    🆓 FREE Microsoft 365 Guide
    Our FREE Guide - Discover 5 things in Microsoft 365 that will save your business time and money….. and one feature that increases your Cyber Security by 99.9%
    ► Download our guide here today: 365gearsystem.com
    💻 Want to Work Together?
    Drop me an email: jonathan@integral-it.co.uk
    😁 Follow on Socials
    TikTok @bearded365guy
    Instagram @bearded365guy
    Chapters
    00:00 Introduction
    00:50 How Security Used to Work
    02:02 How Everything Has Changed
    03:13 Today's Network Problem
    03:49 Secure Service Edge
    04:16 Microsoft 365 SSE
    05:07 Secure Service Edge Demo
    05:28 Activate Service
    05:49 Enabling Conditional Access
    06:28 Traffic Forwarding Profiles
    07:48 Install Client on Devices
    09:05 Create Conditional Access Policy
    11:50 Create Web Filtering Policy
    14:14 Create Security Profile
    15:33 Create Web Filtering Conditional Access
    17:37 Monitoring Logs

КОМЕНТАРІ • 236

  • @MarkSadlier
    @MarkSadlier 21 годину тому +1

    Dude - I'm so glad to have found your channel. No filler, just great explainers and demonstrations. Cheers!

  • @adamcrawford1346
    @adamcrawford1346 3 місяці тому +10

    Thanks Jonathan. This is cool. Exactly what we have all been needing. Great explanation.

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      Thanks Adam, I think this technology will be a great hit

    • @TheTubejunky
      @TheTubejunky 3 місяці тому

      You need a centralized government to control your data? This is what "we all" need. No no no. Definitely not from Microsoft's leaky bits.

  • @hquest
    @hquest 3 місяці тому +7

    It is an interesting concept of doing central policy management of the Windows firewall and/or hosts file via web interface. Perhaps, as you mentioned, welcome for smaller businesses, because we on the large enterprise already do this (using different tools) since before pandemic days. The main drawback I see is the reliance on one single source for everything: if Microsoft makes one accidental change, your entire business is locked out. That is why having different vendors for certain solutions - including on-premises - still helps keeping your business running.
    Good recap of the tool, though. Kudos!

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Thanks for your comment, well balanced

  • @DomKirby
    @DomKirby 3 місяці тому

    Nice demo! I'm excited for this product, been testing it out as well.

  • @vvgvvg-qe2zs
    @vvgvvg-qe2zs Місяць тому +1

    Hi Jonathan, you wouldn't believe how much your videos have been helping me. I'm curious, do you think this will limited use of SD-WAN?

  • @ehudv9276
    @ehudv9276 3 місяці тому +49

    Oh yeah, GENIUS idea. Just give uncle ms ALL your traffic and trust them to secure you and keep your privacy..
    Great

    • @MartinMaat
      @MartinMaat 2 місяці тому +5

      And MS will manage your keys I presume. How convenient. For the government.

    • @dammitdad
      @dammitdad 2 місяці тому +2

      Western government will not allow any IT system that doesn't send everything to them.

    • @retro93277
      @retro93277 2 місяці тому +1

      AWS Does the same thing lol

  • @TejasJain1991
    @TejasJain1991 Місяць тому

    Thanks Johnathan! Looking forward to new demos like this!

  • @taavisepp
    @taavisepp 3 місяці тому +2

    Thanks, Jonathan! Did I miss it or can you not have custom messages displayed to the policy subjects? To simply block the access to certain categories/ sites sans note that it violates the company policy will IMHO create more confusion and incidents/ SR’s.

  • @johnwarde2409
    @johnwarde2409 3 місяці тому +4

    Another great video Jonathan, many thanks. One question: is it dependant on devices being controlled via Intune?

    • @MK-ob4zy
      @MK-ob4zy 3 місяці тому

      Good question

    • @bearded365guy
      @bearded365guy  3 місяці тому +3

      Devices must be either Microsoft Entra joined or Microsoft Entra hybrid joined.
      Microsoft Entra registered devices aren't supported.

  • @hhbadarin
    @hhbadarin 3 місяці тому +1

    Great video as always!

  • @philiphare8176
    @philiphare8176 3 місяці тому

    Hi Jonathan
    Thanks for another great video.
    I wonder if this have multi geo functionality?

  • @SevereMkII
    @SevereMkII 3 місяці тому +11

    given Windows and Microsoft's rampant data collection, who in their right mind would use this?

    • @bearded365guy
      @bearded365guy  3 місяці тому +3

      All of our clients.

    • @jasoncummings7052
      @jasoncummings7052 2 місяці тому

      Facebook does it.
      Apple does it.
      Amazon does it.
      TikTok does it.
      Google does it.
      Oracle does it.
      The Authorities pushing data privacy rules while getting more invasive.
      Todays' age DATA.

  • @dondebolt3566
    @dondebolt3566 3 місяці тому +7

    You mentioned your test VM was in InTune for the tenant. Is InTune enrollment required to run Global Secure Access on an endpoint device? Also, how long do you have to wait to see the "All Compliant Network Locations" show up in the locations list when you go to create the new Block policy? thx.

    • @MrSam_Derp_Man
      @MrSam_Derp_Man 3 місяці тому +2

      No it's not required. But you will need that global secure access software and a logged in user.

  • @kb8570
    @kb8570 2 місяці тому

    Hello Jonathan, thank you for this video. Can you please explain why you selected the BLOCK option at 10:16 in the video ? Also, is there an option to make all activity and traffic on your laptop use Microsoft Global Secure Access therefore keeping everything secure.

  • @tranghienkhoa7967
    @tranghienkhoa7967 2 місяці тому +1

    Thank you so much for this video, it is very helpful and easy to understand. I have one quick question. In case the company want to block users from accessing social media, if the users want to bypass the block, can they just disconnect from the GSA client to access? Thank you in advance!

  • @gerkeogh5009
    @gerkeogh5009 15 днів тому +1

    hi Jonathan, great vid, thanks. 16mins 55sec in you say it takes some time for the web content filter to apply. how long are we talking? minutes or hours?

  • @sherrilltechnology
    @sherrilltechnology 2 місяці тому +1

    Great information Brother and great video thanks so much!

  • @mcgarnacle21
    @mcgarnacle21 3 місяці тому +6

    This is awesome, thanks Jonathon! Any chance you could do a video on Entra Private Access and the way it works with allowing you to access on-prem resources such as file shares and private apps through the global secure access client?

  • @pcostapi
    @pcostapi 3 місяці тому +1

    Hey quick Question , can i have other traffic like Domain Controller Line of Sight ?

  • @annehipolito7305
    @annehipolito7305 Місяць тому

    Thanks! Is it possible to block specific websites in just a specific time?

  • @devarajsankar7726
    @devarajsankar7726 17 днів тому +1

    Very intresting one.

  • @rolling_marbles
    @rolling_marbles 3 місяці тому +7

    Not a new technology, just new to Microsoft. This has been done by Zscaler, Palo Alto, Cisco, and VMware for several years now. Cloudflare also does it now.
    Secure Access Service Edge (SASE) has existed as a VPN replacement for almost 10 years now.
    This is far from new to the industry.

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      I don’t disagree. This is SSE not SASE though.

    • @ByronScottJones
      @ByronScottJones 3 місяці тому +1

      Not new to Microsoft either. They had this technology in windows server over a decade ago. This is just a cloud version.

  • @maheshdesilva2308
    @maheshdesilva2308 Місяць тому

    Nice video. I really like how you focus on business premium. There is very little smb Microsoft content yt.

  • @annielam7150
    @annielam7150 Місяць тому +1

    This reminds me of Computer Basics (Unit 3: The Internet and More, Pages 213 & 214).

  • @pauldeacon6123
    @pauldeacon6123 2 місяці тому

    Question how does this affects a company that is using a sonic wall to filter traffic in and out from the local network to the internet.

  • @greenwithNV
    @greenwithNV 3 місяці тому +4

    A customizabe Block page is NEEDED! The "Hmm,.... cant reach this page" will do nothing but increase support calls that the internet is not working.

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Agree completely. I’m sure it will come

  • @brokengabe2342
    @brokengabe2342 3 місяці тому +15

    I trust Microsoft as much as I can trust their open source operating system. Especially after Bill Gates stated that he thinks the government should have access to everyone's data.

    • @bearded365guy
      @bearded365guy  3 місяці тому +2

      You could use another product if you don’t like Microsoft…

    • @infini.tesimo
      @infini.tesimo 2 місяці тому

      ​@@bearded365guyit's more like do you not see the problem given the responses you have given out to nearly all the comments you commented on?

    • @bearded365guy
      @bearded365guy  2 місяці тому +2

      It’s a completely free world. I’m a content creator. I don’t have any affiliation with Microsoft. If people don’t want to use their products, they don’t have to.

  • @manimurthy6569
    @manimurthy6569 2 місяці тому

    When I tried implementing this as per the given steps I faced an error in Global Secure Access Client "". When I dig into this error found that the device in which Global Secure Access client required the device to be Microsoft Entra Joined device. Wondering if there is any way around as my users have BYOD and I cannot get their device to Entra Joined.

  • @WhiteOSO1229
    @WhiteOSO1229 2 місяці тому +1

    Thank you and great video, can I skip installing the GlobalSecureAccessClient and still get conditional access and web filtering to work?

  • @robertfontaine3650
    @robertfontaine3650 5 днів тому +1

    For small businesses M365 based this is a nice addition for control monitoring and mobile devices use.

  • @Majikal_Mike
    @Majikal_Mike 3 місяці тому +1

    Cracking video and a great insight. A bit put off by the generic blocked access error rather than a defined “Your company has restricted access to…” response. Is this available?

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      Not yet. It should be coming….

  • @blondinbatusha7120
    @blondinbatusha7120 3 місяці тому

    "All Compliant Network Locations" not showing when I try to configure The Condition. Any Idea why?
    Thanks for your all videos, they're amazing!!!

  • @shanceaylown
    @shanceaylown 2 дні тому +1

    Very good video, congratulations. One question, regarding the web content filtering you showed. If the user disables the global client, would they be able to reach previously blocked websites?

    • @bearded365guy
      @bearded365guy  День тому +1

      Not with the conditional access policy

    • @shanceaylown
      @shanceaylown День тому

      @@bearded365guy Thank you, but sorry, maybe it's not completely clear to me. With conditional policies you only block traffic to certain apps?

  • @dineshchaudhary2918
    @dineshchaudhary2918 2 місяці тому

    Does it help and work in the hybrid autopilot provisioning

  • @TheChris69er
    @TheChris69er 3 місяці тому +1

    Hi Jonathan great video, i am a little confused about the title of this video. I don't see you demonstrating the VPN feature here. Will you domonstrate this in a future video? I think it vwould be great secure method of ditching traditional and sometimes very troublesome VPN's via Conditnal Acess rules

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      SSE isn’t a VPN. It’s much more than that. The title was aimed at the fact that SSE would replace the need for any VPN

  • @christophermckissick2089
    @christophermckissick2089 Місяць тому

    If I have a program on my local server, would this allow me to access the program without a VPN?

  • @peterholthoffman
    @peterholthoffman 3 місяці тому +4

    My issue with any video like this is I'm left with no understanding of why this does what it does.
    Ok, user tries to go to a blocked site... Is the magic done with DNS? Or does DNS resolve ok but routing tables prevent the connection? Or is there something else going on? If the user is using a non-Edge browser, does it still work? What path do the packets take? What source IP address does the website see?

    • @bearded365guy
      @bearded365guy  3 місяці тому +2

      Hi Peter, the aim of my videos is to educate the owners of businesses who aren’t technical but need to understand concepts. I am sure there are other videos on YT that go into the technical elements that you want

  • @SalissouMayanaAbdoulAziz
    @SalissouMayanaAbdoulAziz 3 місяці тому +1

    Great video. Thank you.
    Can i use it to access on prem resources?

    • @dongelhouse
      @dongelhouse 3 місяці тому +1

      Yes you can. You have to create at least one (MS prefer two) server on prem and that will connect to this. I have tested this to use RDP right away from my laptop to an on prem server

  • @ronaldhofman1726
    @ronaldhofman1726 3 місяці тому +3

    And wy exactly should i trust MS, is have a UDM PRO router and use wireguard to access my home in control myself , never use 3rd party vpn,

  • @ciscohaider7068
    @ciscohaider7068 2 місяці тому

    Can I use is it to deploy images using autopilot with OOB?

  • @maryammoazzam9491
    @maryammoazzam9491 3 місяці тому +2

    How can we allow users to access network resources e.g shared drives. Also can they still use mittel soft phone while working from home.can they access AX which is onsite and not in the cloud?

    • @bearded365guy
      @bearded365guy  3 місяці тому

      If you still have servers, you can configure for private access. I didn’t show in the video.
      Yes, you can access all of your apps still

    • @TheChris69er
      @TheChris69er 3 місяці тому

      ​@@bearded365guy It would be great to see a video on Private access. I watched the video expecting to see how a VPN works with Conditional access. I presume you have to have some bit software client on your servers, which communicates with Entra ID'S Conditional Access rules. IF this works reliably, I can see that could be a great replacement to awkward to configure and bothersome VPNs

  • @dougwolfe2
    @dougwolfe2 2 місяці тому

    Hi Johnathan, any idea how this will effect Teams Rooms?

  • @ecr80
    @ecr80 3 місяці тому +6

    Hope you’re right. Like 6 months ago someone from the Entra team told us that when this product comes out of preview it would
    require an additional license.

  • @Wolf103085
    @Wolf103085 Місяць тому +1

    @bearded365guy
    So question on this. Scenario: Since we have an onsite VPN while utilizing a hybrid environment, all the resources the employee's need to access is on-prem Domain, our VPN connects them to said on-prem domain so they can reach the sources needed.
    Question: Can this SSE also be utilized the same way? Or is this strictly an "encryption" method of their traffic vs. encrypted traffic between endpoints(from their laptop to our on-prem domain).

    • @bearded365guy
      @bearded365guy  Місяць тому

      Yes, there is a private access part of this product for your scenario- I just didn’t talk about it in the video!

  • @severorms
    @severorms 3 місяці тому

    What an amazing feature. I have a client who will make good use of this resource.

  • @hassanmaje5849
    @hassanmaje5849 2 місяці тому +1

    I am not a techie but would this protection apply when accessing other business apps (non-MS 365) that are on the cloud?

  • @dongelhouse
    @dongelhouse 3 місяці тому

    Thanks Jonathan!! Would it also be possible that the user can't Pause the SSE? Because if you pause it they can still go to facebook right?

    • @darrenoleary
      @darrenoleary 3 місяці тому

      Also wondering this! Great video though 👍

  • @RedNinja
    @RedNinja 3 місяці тому +2

    Can this be deployed for Windows 365 CPCs and become Zscaler alternative?

  • @Eggy-cz9bh
    @Eggy-cz9bh Місяць тому

    Great explainer. I started setting it up after seeing the video - indeed nothing like a VPN, the sergation of different apps and conditional access make this an absolute game changer. However I'm running into tunneling issues, RDP works absolutely great - no issues so the next step was a simple SQL server, two standard SQL ports ; can reach it just fine, studio as well but the moment I plug a real app on it (Accounting app) it can connect there is back and forth communication the only thing we seem to not be getting back are TDS packages - which contain of course the payload, making it effectively not working. I've been looking online as some youtube videos show a client with UDP support (and TDS?) and private DNS.. but official resources I'm unable to find - roadmap, changelog, client status etc.
    You've got more info? would love to run this instead of a VPN but due to the TDS issue I cannot.

  • @ChrisWard74
    @ChrisWard74 3 місяці тому +1

    For the blocked websites is it possible to have a custom message that is displayed to the user when they are blocked?

    • @bearded365guy
      @bearded365guy  3 місяці тому

      I don’t think so at this stage. I’m sure it will come though

  • @billmann9947
    @billmann9947 3 місяці тому +1

    This looks cool and I see a lot of benefits, esp if MS includes it with existing Bus Prem. But wow, that' a lot of scattered places to go to setup, manage, and review. And I bet there's no consolidated way to report what's in place for the tenant. Seems like it could easily make for a bit of nightmare to manage.

  • @IamHere2007de
    @IamHere2007de 3 місяці тому +1

    The requirements for the client states "Microsoft Entra joined" - can it also be hybrid domain joined?

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Devices must be either Microsoft Entra joined or Microsoft Entra hybrid joined.
      Microsoft Entra registered devices aren't supported.

  • @thecomputetech6404
    @thecomputetech6404 3 місяці тому +1

    Great video but where are you guys getting these 365 tenants from for demo purposes.

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Spun up a tenant and bought some licenses

    • @dongelhouse
      @dongelhouse 3 місяці тому +1

      I asked my employer for a MSDN subscription. You get some bucks to spin up VM's and you get E5 licenses to test.

  • @fbifido2
    @fbifido2 2 місяці тому

    @6:57 - the middle option shouldn't that be for VPN?

  • @upinsmoke-tv
    @upinsmoke-tv 3 місяці тому +1

    Thanks for demo , I followed your steps but I don't have the option in conditional access--->Conditions--->Locations---> Include , I don't
    have the option Any Locations , I have the others :All trusted IPs ,trusted Locations , All Compliant Network & selected locations, but no Any Location , did I miss a step?

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      Go back to earlier in the video when I switched the toggle on for the conditional access part. Is it switched on or off?

    • @upinsmoke-tv
      @upinsmoke-tv 3 місяці тому

      ty for quick reply , when creating the policy CA09 , You selected the user , then went to Conditions , I don't have "Any Location" as an option in Locations section , I only have All trusted IPs ,All trusted locations , All Compliant Network locations (preview) & Selected Locations , you have when you select Include Any Location , Im missing that option @@bearded365guy

  • @tommo33
    @tommo33 2 місяці тому +1

    All goes well until 10:10 in your video, where you are supposed to select "All Compliant Network Locations", but that option hasn't appeared (did everything else up to this part of the video 24 hours ago), and still that option doesn't show up to be able to exclude it

    • @bearded365guy
      @bearded365guy  2 місяці тому

      Go back to earlier in the video where we turn the setting on to allow remote access, is that still turned on?

    • @tommo33
      @tommo33 2 місяці тому

      I had turned it on, but it had turned itself off again. Turning it back on again resolved the issue, thank you @@bearded365guy

  • @Sheldyck
    @Sheldyck 3 місяці тому

    your definition of any is limited to 365?

  • @miyu545
    @miyu545 3 місяці тому +5

    Microsoft can't even fix its spam management technology - and we're supposed to believe their cybersecurity apps or services are top-notch. Ya. Good one.

    • @bearded365guy
      @bearded365guy  3 місяці тому +2

      Ouch

    • @billmann9947
      @billmann9947 3 місяці тому +1

      you're not wrong about spam tech.

    • @marcusm5127
      @marcusm5127 3 місяці тому +2

      We enjoy blocking domains as free stats.

    • @bearded365guy
      @bearded365guy  3 місяці тому

      What you use for spam management?

  • @Farreach
    @Farreach 2 місяці тому +1

    I am a tier 2 Dynamic 365 technical engineer. its nice to refresh on the other side of the coin . I would assume if you are helping other companies you are a Partner?

  • @neoxnet
    @neoxnet 3 місяці тому +1

    I was playing at home and needed one more thing to be mentioned to win the game... My last word on my bingo sheet was 'zero trust'. Given then SSE is all about zero trust, I was disappointed that wasn't uttered even once... Joking aside, our organisation was trying to implement Cloudfare's ZTNA solution. Give Microsoft a few more years and I reckon it'll kill it. The Conditional Access is a killer feature that will make it a compelling sell if you are already heavily embedded in the Microsoft ecosystem.

    • @bearded365guy
      @bearded365guy  3 місяці тому +1

      Agreed. Did I not mention zero trust? 🤣

  • @aaronk9910
    @aaronk9910 3 місяці тому +2

    Can't I just pause the client like you did to simply access social media again?

    • @socialwill
      @socialwill 3 місяці тому

      I was thinking the same thing.

    • @MichaelBrownPlus
      @MichaelBrownPlus 3 місяці тому

      He’s an administrator. Clients won’t have control over the service.

    • @jeremybeatson5222
      @jeremybeatson5222 3 місяці тому

      During my testing even a standard user can pause the client. Surely that will change when the service reaches General Availability? It defeats the purpose of the client entirely if a standard user can pause it. Can anyone else confirm the same results?

  • @xellaz
    @xellaz 2 місяці тому

    Would love to see an open source version of this running on my server at home. 😝

  • @davidadams421
    @davidadams421 3 місяці тому

    Really like the demo, especially the setup, but it kinda misses the point and intended purpose of SSE. SSE is architecturally supposed to create a secure corporate LAN atop an insure/in-securable WAN i.e. the Internet, and thereby returns to the 'secure office infrastructure' of old, but this time communicating together over 'any old network'. Accessing a secure payroll server from a coffee shop would have better demonstrated its purpose. Also, perhaps a follow-video? Microsoft has always heralded its ZTNA as 'secure access to your M365 from anywhere'. Aside from web filtering and broad statements like 'well, it's more secure', what additional value does GSA bring to small businesses?

  • @maheshdesilva2308
    @maheshdesilva2308 Місяць тому +1

    Any eta on when it will hit ga?

  • @kabbahthoronkaExden
    @kabbahthoronkaExden 22 дні тому

    Your explanation is great, can I become your digital/social media manager?

  • @technicallyme
    @technicallyme 3 місяці тому

    Ok but what about the user on the network that are compromised

  • @seanfaherty
    @seanfaherty 3 місяці тому +2

    So the best idea you have is for people to run all their network traffic through Microsoft .
    I don’t think you’ve thought about this very long

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Microsoft, the billion dollar company thought about it more than me….

    • @seanfaherty
      @seanfaherty 3 місяці тому +1

      obviously. But why would you encourage your subscribers to volunteer to be part of a scheme which would encrypt the data on your computer so Microsoft can be the only company who is able to sell your data to the data brokers ?
      Why not encourage people to use an OS with no telemetry ? why not promote the idea of self hosted VPNs ?
      You are part of the problem
      @@bearded365guy

  • @ScottMillar
    @ScottMillar 3 місяці тому +1

    great video i'm looking at a cloud VPN for a client this might just be the answer if they are willing to wait

  • @lakergreat1
    @lakergreat1 3 місяці тому

    How does this factor into zero trust Microsoft strategy?

  • @diegoandrade-ns4hu
    @diegoandrade-ns4hu 2 місяці тому +1

    It's free? thanks!!

  • @socialwill
    @socialwill 3 місяці тому +1

    I really like this idea, but it only restricts if you have the client installed.

    • @bearded365guy
      @bearded365guy  3 місяці тому

      It only allows clients access via the client…. So if you don’t have the client, no access

    • @socialwill
      @socialwill 3 місяці тому

      @@bearded365guy correct, however for the Private or local access it would be great if there was a way to secure the local target so that it only allows access if you have the client. You could then do MFA for internal needs.

  • @csparty11
    @csparty11 3 місяці тому +2

    This sounds more like a microsoft commercial to me. You're not really explaining how this works, it still creates a tunnel probably. Plus this is all cloud based, i don't like that. I want to be able to run it on premise at my own demands. That's the problem with Microsoft, they built everything into microsoft 365 (software as a service) and you beome more and more dependant. Also in your example, if they pause that client they can obviously still visit social media.

  • @mikesveganlife4359
    @mikesveganlife4359 3 місяці тому +2

    Microsoft finally seeing the need for the same thing the Google cloud platform has had since 2017 if not sooner?

    • @bearded365guy
      @bearded365guy  3 місяці тому

      What Google technology are you referring to?

  • @Spp235.
    @Spp235. 3 місяці тому +1

    Uggh it took over 6 mins before he even showed it. Come on save the edification and configuration to the end…

  • @vladjirasek
    @vladjirasek 3 місяці тому +2

    Tailscale beats this on every aspect.

    • @bearded365guy
      @bearded365guy  3 місяці тому

      I’ve not used that.

    • @spaceshipdev
      @spaceshipdev 2 місяці тому

      Oh yeh, this is Tailscale's territory all day long

  • @infotruther
    @infotruther 3 місяці тому

    Hi finity?

  • @edgecrush3r
    @edgecrush3r Місяць тому

    This just made zScaler ZPI and ZPA pretty redundant.

  • @infotruther
    @infotruther 3 місяці тому

    Hap ol boy hap on.

  • @marcusm5127
    @marcusm5127 3 місяці тому +2

    Can't wait to enable this in five years.

  • @SwissPGO
    @SwissPGO 3 місяці тому

    They can't even support linux ? We have 30% linux devices

  • @tahaaminmazumder8869
    @tahaaminmazumder8869 3 місяці тому +2

    Microsoft and privacy or security don't go along...they are always running in the opposite directions, LOL!😂

  • @degu44
    @degu44 3 місяці тому +1

    Great infornational video but this is going to be too complicated to setup for the average user. Not everyone has administrator knowledge or experience.

  • @jesus.moreno
    @jesus.moreno 3 місяці тому +1

    OMG ... no way .... fuck ... I love you man .... but what happend if the user uninstall the program ? ... i want to block for all the network all social media and betting websites .... it will work for shared email accounts ?? ... or only for licensed accounts ?

  • @tridy7893
    @tridy7893 2 місяці тому +1

    Well, this is exactly what it is - VPN from Microsoft, isn't it?

    • @bearded365guy
      @bearded365guy  2 місяці тому

      It’s more than a VPN

    • @tridy7893
      @tridy7893 2 місяці тому

      I agree, a VPN with Firewall with App control and some others.
      The example you present, with blocking social networks, I believe is not a good example of "more than VPN". There is so much work done in a browser these days, including most of the Office docs as well, the protection often comes about basically listing the websites one is allowed (or not allowed) to go to. EntraID or VPN cert for security is a separate question.
      As for blocking *users* from using social media, I disagree with that. Blocking computers - yes; blocking users - no. People often have 2 mobile phones - one for work, and one for personal needs. I wonder why.
      If I were to use this solution as a user, I would either do it like you did - I would run the work instance in a VM, or I would have 2 computers. Again it secures the work environment by implementing solutions like that. And it is ok. But there is no way it is going to change the behavior of the people.

  • @fbifido2
    @fbifido2 2 місяці тому

    How does this video show us "No more VPN" ?????????????????????????????????????????

  • @ultrasys
    @ultrasys 2 місяці тому

    Oh, c’mon… MS playing catch up with IAM? Hahahaha

  • @brandonchappell1535
    @brandonchappell1535 3 місяці тому +2

    Using microsoft for privacy, is like using Jimmy Savile for babysitting!!!

    • @bearded365guy
      @bearded365guy  3 місяці тому

      Not sure that’s appropriate

    • @uweburger
      @uweburger 2 місяці тому +1

      ​@@bearded365guyMaybe not appropriate, but funny

  • @chrismurray5153
    @chrismurray5153 2 місяці тому +1

    So its a VPN and some route rules.

    • @bearded365guy
      @bearded365guy  2 місяці тому

      It’s more than that

    • @chrismurray5153
      @chrismurray5153 2 місяці тому

      @@bearded365guy what else? Use big words, I'm an IT engineer.

    • @bearded365guy
      @bearded365guy  2 місяці тому

      Big words! 🤣
      If you technical, have a look here..
      learn.microsoft.com/en-us/entra/global-secure-access/overview-what-is-global-secure-access

    • @chrismurray5153
      @chrismurray5153 2 місяці тому

      @@bearded365guy no mention of non-Microsoft OSs. Nor mobile or tablet.

    • @bearded365guy
      @bearded365guy  2 місяці тому

      If you watch the point where I install the client, all other OS and tablets are supported

  • @FOSSuser
    @FOSSuser 2 місяці тому +1

    Microsoft and secure and private is an oxymoron with ms Spyware telemetry including like tictoc keystrokes

  • @brianmurphy4702
    @brianmurphy4702 3 місяці тому +1

    = letting the fox into the hen house (Microsoft really ?)

  • @gtm559
    @gtm559 3 місяці тому +1

    If i understand correctly Microsoft create a tunnel and has access to pc.
    If yes this mean Microsoft has access to everything in pc because they don't have any open source to explain what they really do. Really you think this is good?? I use windows and i am not fan Linux or Mac boy,i use everything because of my work.

  • @kabyson
    @kabyson 3 місяці тому +1

    +

  • @manofmartin
    @manofmartin 3 місяці тому

    Think I'll stick with my vpn. Lol

  • @v-for-victory
    @v-for-victory 3 місяці тому

    No. I am using Arch Linux btw.

  • @user-lh5uu2nr1p
    @user-lh5uu2nr1p 3 місяці тому +83

    Microsoft and Secure don't belong together in the same sentence.

    • @bearded365guy
      @bearded365guy  3 місяці тому +12

      I’m curious, could you explain why?

    • @maverickny1
      @maverickny1 3 місяці тому +6

      Weird statement. My doors secure unless I leave it unlocked or you have the tools to unlock it

    • @marcusm5127
      @marcusm5127 3 місяці тому +14

      This is just the standard complaint comment.

    • @aussiegruber86
      @aussiegruber86 3 місяці тому +7

      Mac fanboy alert

    • @infotruther
      @infotruther 3 місяці тому +6

      Nah he's a Linux boy.

  • @BigFunnyGiant
    @BigFunnyGiant 2 місяці тому

    You mean “Microsoft capture all your data in the name of preventing to be secure”.

  • @outlander8665
    @outlander8665 3 місяці тому +1

    If you ask anyone on planet earth "Who is the biggest online intruder?" Everyone will tell you 2 nsmes "Microsoft and Google". So who will protect us from these two?🤣 Security Paradox

  • @robinthekidd
    @robinthekidd 3 місяці тому

    *No more VPNs! It's not hard, theirs grammar checkers all over the internet, frankly that's a basic one a grown man should know.

  • @lerssilarsson6414
    @lerssilarsson6414 3 місяці тому +2

    Must be sarcasm?

  • @Simulacra001
    @Simulacra001 3 місяці тому

    Hmm, when the OS serves advertisements and also openly harvests data it’s kinda hard to trust the same company to take care of your security/VPN needs…