Global Secure Access for Copilot Studio Agents provides several benefits and some limitations:
Positives:
- Enhanced Security: It allows organizations to apply network security policies such as web content filtering, threat intelligence filtering, and network file filtering to agent traffic, similar to user traffic.
- Visibility and Control: Administrators gain better visibility and control over agent network activity, ensuring that agents comply with organizational security policies.
- Consistent Policies: Security policies are applied at the tenant level using a baseline profile, ensuring consistent security controls across all agent traffic.
- Real-time Evaluation: The Global Secure Access service evaluates agent requests in real-time against configured security policies, allowing or denying requests based on compliance.
Negatives:
- Limited Functionality: As a preview feature, it may have restricted functionality and is not meant for production use.
- Known Limitations: Certain network requests, such as those to Dataverse and Azure SQL, are not supported, which may limit the functionality of some agents.
- Configuration Complexity: Setting up and managing security policies may require additional administrative effort and expertise.
How to Enable Global Secure Access for Copilot Studio Agents:
To enable Global Secure Access for Copilot Studio Agents, follow these steps:
- Sign in to the Power Platform Admin Center as a Power Platform Administrator.
- Navigate to Security > Identity & access > Global Secure Access for Agents.
- Select the appropriate environment or environment group and click Set up.
- Enable Global Secure Access for Agents for the selected environment.
After enabling, ensure to create or update any existing custom connectors to route traffic through Global Secure Access.