How it works
Define one persona per user segment (e.g. Finance, Marketing, Developers). For each persona, choose a filtering model and select which web categories to block or allow.
The wizard generates two CSV files that you can import directly using the
Migrate2GSA
PowerShell module's
Tip: "Allow all, block exceptions" is the recommended starting model — it only requires selecting the categories you want to block.
Start-EntraInternetAccessProvisioning cmdlet.
Tip: "Allow all, block exceptions" is the recommended starting model — it only requires selecting the categories you want to block.
User Personas
No personas yet. Click + Add Persona to get started.
Export CSV Files
Download both files and place them in the same folder. Run Start-EntraInternetAccessProvisioning with -PoliciesCsvPath and -SecurityProfilesCsvPath.