Resources
Coexistence guides: GSA alongside your incumbent vendor.
Adopting Global Secure Access rarely means ripping out your existing security vendor overnight. These guides explain how GSA and your current stack split the traffic — so you can migrate app by app, not big-bang.
Zscaler
GSA + Zscaler
Split-tunnel, PAC-based and full coexistence for Internet Access and Private Access workloads.
Read guide → Cisco UmbrellaGSA + Cisco Umbrella
DNS-layer security, proxy chaining and selective traffic steering approaches.
Read guide → Cisco Secure AccessGSA + Cisco Secure Access
Secure Internet Access, Zero Trust Access and combined private access patterns.
Read guide → Cisco VPNGSA + Cisco VPN
Secure Access VPNaaS and ASA Remote Access split-include coexistence scenarios.
Read guide → Palo AltoGSA + Prisma Access
Tunnel-based, split-tunnel and selective routing coexistence patterns.
Read guide → NetskopeGSA + Netskope
Steering configuration, network location profiles and private access coexistence.
Read guide →
Further references
Official Microsoft resources & open-source tooling
- Microsoft — Global Secure Access · official scenario guides, step-by-step docs and recorded demos · github.com/microsoft/GlobalSecureAccess
- Microsoft — Migrate2GSA · tools to speed migration from other SSE vendors to GSA · github.com/microsoft/Migrate2GSA
- Microsoft — GSA Policy Workbench · read-only, single-pane visibility of GSA Internet & Private Access policy · github.com/microsoft/GSA-Policy-Workbench
- Maester · MIT test framework with 9 built-in GSA health checks (connector hygiene, forwarding profiles, Conditional Access) · github.com/maester365/maester
- Microsoft Learn — GSA documentation hub · the authoritative reference for all coexistence patterns · learn.microsoft.com/entra/global-secure-access
- merill/awesome-entra · curated list of Entra tooling and resources · github.com/merill/awesome-entra