{"data":{"id":"gsa-client","name":"Global Secure Access client","summary":"What the Global Secure Access client itself needs: its service edges, health probes and the sign-in it relies on. Exclude these from any other proxy.","scenario":"Managed device","products":["global-secure-access"],"lastReviewed":"2026-10-06","m365SetIds":[],"endpointVersion":"2026081400","missingSetIds":[],"references":[{"url":"https://learn.microsoft.com/en-us/entra/global-secure-access/reference-current-known-limitations#global-secure-access-client-limitations","title":"Known limitations for Global Secure Access: client limitations"},{"url":"https://learn.microsoft.com/en-us/entra/global-secure-access/troubleshoot-global-secure-access-client-diagnostics-health-check","title":"Troubleshoot the Global Secure Access client: Health check tab"}],"notes":"Microsoft publishes these service FQDNs and IP ranges as bypass lists on its SSE coexistence pages; there is no standalone network requirements page. Replace <tenantid> with your tenant ID. The client needs secure DNS (DoH/DoT) disabled, tunnels IPv4 only, and does not tunnel QUIC for Internet Access.","entries":[{"destination":"*.globalsecureaccess.microsoft.com","kind":"WildcardFqdn","protocol":"TCP","ports":[443],"purpose":"Global Secure Access service edges, health probes and policy (umbrella for all GSA service FQDNs)","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-cisco-secure-access-coexistence#bypass-global-secure-access-ips-and-fqdns-in-cisco-secure-accessumbrella","sourceTitle":"Security Service Edge (SSE) coexistence with Microsoft and Cisco Secure Access","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Same string on the Netskope and Palo Alto coexistence pages. The Advanced diagnostics page describes ForwardingProfile.json as holding 'the Global Secure Access service edge IP address your client connects to (*.globalsecureaccess.microsoft.com)'. Port 443 comes from the Windows health check 'Edge is reachable' (Test-NetConnection -ComputerName <edge's fqdn> -Port 443). The GSA page says not to route it through an outbound proxy and to use a PAC exclusion."},{"destination":"internet.edgediagnostic.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":null,"ports":[],"purpose":"Edge health diagnostic probe for the Internet Access channel","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Purpose inferred from the name and the health check's 'Diagnostic URLs in forwarding profile'; the page gives no purpose. Covered by the *.globalsecureaccess wildcard. Port not stated."},{"destination":"m365.edgediagnostic.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":null,"ports":[],"purpose":"Edge health diagnostic probe for the Microsoft 365/Microsoft traffic channel","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Purpose inferred from the name. Port not stated."},{"destination":"private.edgediagnostic.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":null,"ports":[],"purpose":"Edge health diagnostic probe for the Private Access channel","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Purpose inferred from the name. Port not stated."},{"destination":"auth.edgediagnostic.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":null,"ports":[],"purpose":"Edge health diagnostic probe for the auth (Microsoft Entra) channel","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Purpose inferred from the name. The install page lists the client channels as 'Microsoft Entra, Microsoft 365, Private Access, Internet Access'. Port not stated."},{"destination":"aps.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":null,"ports":[],"purpose":"Global Secure Access service endpoint (purpose not documented)","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"The page says these entries 'need to be present in the app profiles for every scenario'. The function of 'aps' is not explained anywhere I found."},{"destination":"<tenantid>.internet.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific Internet Access edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template: replace <tenantid> with the tenant GUID. Port 443 from the health checks: Windows 'Edge is reachable' and the macOS example 'nc -vz <guid>.m365.client.globalsecureaccess.microsoft.com 443'."},{"destination":"<tenantid>.m365.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific Microsoft traffic (M365) edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN."},{"destination":"<tenantid>.private.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific Private Access edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN."},{"destination":"<tenantid>.auth.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific auth (Microsoft Entra channel) edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN; purpose inferred from the name."},{"destination":"<tenantid>.private-backup.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific backup Private Access edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN; 'backup' role inferred from the name."},{"destination":"<tenantid>.internet-backup.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific backup Internet Access edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN."},{"destination":"<tenantid>.m365-backup.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific backup Microsoft traffic edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN."},{"destination":"<tenantid>.auth-backup.client.globalsecureaccess.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Tenant-specific backup auth edge","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":["tenantid"],"notes":"Template FQDN."},{"destination":"*.edgediagnostic.globalsecureaccess.microsoft.com","kind":"WildcardFqdn","protocol":null,"ports":[],"purpose":"Client health probing; must bypass any outbound proxy (PAC exclusion)","required":true,"origin":"Curated","reason":"Published as the PAC dnsDomainIs suffix '.edgediagnostic.globalsecureaccess.microsoft.com' (leading dot, no asterisk); rewritten as a wildcard to fit the kind schema.","sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/troubleshoot-global-secure-access-client-diagnostics-health-check#change-the-pac-file","sourceTitle":"Troubleshoot the Global Secure Access client for Windows: Health check tab","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"The page says: 'add the FQDN used for health probing to the exclusions list'. The macOS health check page uses the same string."},{"destination":"150.171.15.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":"The same 8 ranges appear on the Cisco, Netskope and Palo Alto pages. No port or per-range purpose is given; for IP-only firewalls."},{"destination":"150.171.18.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"150.171.19.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"150.171.20.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"13.107.232.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"13.107.233.0/24","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"151.206.0.0/16","kind":"Ipv4Cidr","protocol":null,"ports":[],"purpose":"Global Secure Access service IP range","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-zscaler-coexistence#global-secure-access-service-fqdns-and-ips-bypasses","sourceTitle":"Learn about Security Service Edge (SSE) coexistence with Microsoft and Zscaler","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":null},{"destination":"login.microsoftonline.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Microsoft Entra authentication of the user/device token used by the client","required":true,"origin":"Curated","reason":"The health check says the client 'successfully authenticates to Microsoft Entra', but no GSA page names this hostname as a client requirement. It appears on the Cisco/Netskope pages only in the Microsoft 365 traffic-profile bypass list.","sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/troubleshoot-global-secure-access-client-diagnostics-health-check#cached-token","sourceTitle":"Troubleshoot the Global Secure Access client for Windows: Health check tab","acquisition":"EntraSystem","acquisitionConfidence":"Likely","acquisitionBasis":"In Microsoft 365 endpoint set 56, one of the Entra identity sets. Microsoft documents that the always-on Entra system profile covers sign-in and Graph, and that the Microsoft traffic profile is built from this list, so it is expected to be taken before Internet Access. Microsoft publishes neither profile's host list.","expectedAtWebFiltering":false,"m365SetId":56,"placeholders":[],"notes":"Other Entra endpoints (device registration, PRT) are probably needed as well but are not documented by GSA. Source them from the Microsoft 365 or Entra endpoint lists."},{"destination":"www.msftconnecttest.com","kind":"Fqdn","protocol":"TCP","ports":[80],"purpose":"Windows NCSI active probe; the GSA health check 'Can connect to the internet' depends on NCSI","required":true,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/windows-server/networking/ncsi/ncsi-overview#proxies","sourceTitle":"Network Connectivity Status Indicator overview for Windows","acquisition":"InternetAccess","acquisitionConfidence":"Likely","acquisitionBasis":"Not in the Microsoft 365 endpoint list the Microsoft traffic profile is built from, so it is expected to go through the Internet Access profile when that profile is on. Not confirmed: the Entra system profile's hosts aren't published.","expectedAtWebFiltering":true,"m365SetId":null,"placeholders":[],"notes":"Verbatim in the NCSI page's Proxies section, which the GSA health check links to. Port 80 is inferred from 'An active probe is an http request'. The install page also says the client shows 'could not connect to the Internet' when no internet or captive portal is detected."},{"destination":"entra.microsoft.com","kind":"Fqdn","protocol":"TCP","ports":[443],"purpose":"Admin download of the client (Global Secure Access > Connect > Client download)","required":false,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-install-windows-client#download-the-client","sourceTitle":"Install the Global Secure Access client for Windows","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Common endpoint set 50 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Admin and packaging step only; devices don't need it at runtime. Linked as https://entra.microsoft.com."},{"destination":"https://aka.ms/GlobalSecureAccess-WindowsOnArm","kind":"Url","protocol":"TCP","ports":[443],"purpose":"Download link for the separate Windows on Arm (Arm64) client installer","required":false,"origin":"Published","reason":null,"sourceUrl":"https://learn.microsoft.com/en-us/entra/global-secure-access/how-to-install-windows-client#prerequisites","sourceTitle":"Install the Global Secure Access client for Windows","acquisition":"Microsoft365","acquisitionConfidence":"Possible","acquisitionBasis":"In Microsoft 365 Teams / Skype endpoint set 17 (Default category). Microsoft documents that the Microsoft traffic profile is built from this list, combined by traffic category, but not which categories it includes.","expectedAtWebFiltering":null,"m365SetId":null,"placeholders":[],"notes":"Verbatim in the link href; the page text also shows 'aka.ms/GlobalSecureAccess-WindowsOnArm'. On 2026-10-06 it redirected to https://gsa-installers-prod-ehchedbkcjeqg3hp.b01.azurefd.net/installers/preview/GlobalSecureAccessInstaller_arm64_2.32.294.exe. That target is observed, not published; do not allowlist it."}],"evidence":{"confidence":"Current","sources":[],"note":null}},"metadata":{"apiVersion":"1","snapshotId":"8262706f51794f7db21e8bd3f982b386","refreshedAt":"2026-10-07T05:10:36.5571664+00:00","observingSince":"2026-09-26T17:11:44.4078421+00:00","evaluatedAt":"2026-10-07T05:20:00.0340696+00:00","evidence":{"confidence":"Current","sources":[{"sourceId":"windows-itpro","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-security-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-updates","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-365-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"exchange-team-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"intune-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"entra-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-xdr-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-server-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"powershell-team-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-security-blog-main","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"teams-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sharepoint-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-cloud-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sentinel-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"avd-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-arc-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"configmgr-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sql-server-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"onedrive-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"fabric-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"powerbi-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"power-platform-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-governance-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"core-infrastructure-security-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"askds","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"itops-talk-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sysinternals-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-insider-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-experience-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"security-baselines-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-infrastructure-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-365-developer-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"purview-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"entra-identity-platform-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-devops-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"jamf-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"jamf-status-history","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"oracle-security-alerts","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"cloudflare-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"openai-news","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"google-gemini-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"evotec-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"office365itpros","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"oofhours","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"msendpointmgr","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"andrewstaylor","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"jeffreyappel","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"askwoody","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"borncity","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"petri","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"patchmypc","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dynamics-365-product-updates","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"practical365","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"call4cloud","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dirteam-sander","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"chrisse","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dotnet-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"jan-bakker","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"adsecurity","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"maester-blog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"entra-news","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"nathan-mcnulty","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"graph-changelog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"msrc-security-updates","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"msrc-cvrf","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"cisa-kev","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"first-epss","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"public-exploit-code","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-365-roadmap","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-known-issues","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"microsoft-lifecycle","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"edge-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"m365-apps-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"teams-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-updates","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"exchange-builds","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sharepoint-builds","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sql-server-builds","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dotnet-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-admx","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"graph-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"az-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"entra-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"psresourceget-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"psreadline-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-cli-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-terminal-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"winget-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"vscode-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"exchange-online-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"teams-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"chrome-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"firefox-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"apple-security-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"oracle-java-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"jamf-pro-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"android-security-bulletins","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"vmware-esxi-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"vmware-vcenter-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pnp-powershell-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pester-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dbatools-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"maester-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"adessentials-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"gpozaurr-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"testimo-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"mailozaurr-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pswritehtml-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pswriteoffice-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"psparsehtml-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pspublishmodule-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"pseventviewer-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"dnsclientx-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"cleanupmonster-versions","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"openai-models","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"anthropic-models","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"gemini-models","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"global-secure-access-client-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"global-secure-access-macos-client-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"global-secure-access-connector-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"global-secure-access-sensor-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-android-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-ios-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-windows-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-macos-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-endpoint-linux-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"intune-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"entra-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-xdr-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"purview-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-identity-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-office-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-cloud-apps-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"defender-cloud-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"sentinel-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-365-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"avd-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"copilot-studio-whats-new","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-arc-agent-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"openai-api-changelog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"claude-release-notes","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"gemini-api-changelog","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-message-center","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-11-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-10-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"windows-server-releases","confidence":"Current","lastReadAt":"2026-10-07T05:10:36.5571664+00:00"},{"sourceId":"azure-service-tags-public","confidence":"Current","lastReadAt":"2026-10-06T08:00:54.1096255+00:00"},{"sourceId":"m365-endpoints-worldwide","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.692576+00:00"},{"sourceId":"outlook-known-issues","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6927646+00:00"},{"sourceId":"excel-known-issues","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6928023+00:00"},{"sourceId":"graph-known-issues","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6928251+00:00"},{"sourceId":"identity-breaking-changes","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6928362+00:00"},{"sourceId":"powershell-releases","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6928574+00:00"},{"sourceId":"graph-powershell-releases","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.692893+00:00"},{"sourceId":"azure-cli-releases","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6929108+00:00"},{"sourceId":"azure-public-incidents","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6929236+00:00"},{"sourceId":"azure-incident-reviews","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6930439+00:00"},{"sourceId":"security-baseline-artifacts","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6930828+00:00"},{"sourceId":"entra-connect-releases","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6931216+00:00"},{"sourceId":"intune-notices","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2521163+00:00"},{"sourceId":"intune-in-development","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2521393+00:00"},{"sourceId":"autopilot-whats-new","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2521479+00:00"},{"sourceId":"autopilot-preparation-whats-new","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2521673+00:00"},{"sourceId":"windows-365-enterprise-known-issues","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2521731+00:00"},{"sourceId":"windows-365-business-known-issues","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2526882+00:00"},{"sourceId":"fabric-whats-new","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2527703+00:00"},{"sourceId":"windows-server-feature-deprecations","confidence":"Current","lastReadAt":"2026-10-07T01:05:54.6161314+00:00"},{"sourceId":"learn-toc-global-secure-access","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8566792+00:00"},{"sourceId":"learn-toc-intune","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8586908+00:00"},{"sourceId":"learn-toc-entra-conditional-access","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8587896+00:00"},{"sourceId":"learn-toc-entra-authentication","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8588521+00:00"},{"sourceId":"learn-toc-defender-endpoint","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.858887+00:00"},{"sourceId":"learn-toc-windows-deployment","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8589176+00:00"},{"sourceId":"learn-toc-windows-client-management","confidence":"Current","lastReadAt":"2026-10-06T16:26:11.8589415+00:00"},{"sourceId":"vmware-security-advisories","confidence":"Current","lastReadAt":"2026-10-07T05:09:35.6931636+00:00"},{"sourceId":"product-terms-feed","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2528034+00:00"},{"sourceId":"product-terms-mca","confidence":"Current","lastReadAt":"2026-10-07T00:04:56.2529033+00:00"},{"sourceId":"partner-announcements","confidence":"Current","lastReadAt":"2026-10-06T23:03:56.4694574+00:00"}],"note":null}}}