Try our new research platform with insights from 80,000+ expert users

Azure Bastion vs Microsoft Entra Permissions Management comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Azure Bastion
Ranking in Microsoft Security Suite
19th
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
Network Monitoring Software (24th), Remote Monitoring and Management (RMM) (7th)
Microsoft Entra Permissions...
Ranking in Microsoft Security Suite
31st
Average Rating
7.0
Reviews Sentiment
7.0
Number of Reviews
2
Ranking in other categories
Cloud Infrastructure Entitlement Management (CIEM) (7th)
 

Mindshare comparison

As of August 2025, in the Microsoft Security Suite category, the mindshare of Azure Bastion is 1.3%, down from 1.5% compared to the previous year. The mindshare of Microsoft Entra Permissions Management is 0.6%, down from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite
 

Featured Reviews

Deepanshu Thakur - PeerSpot reviewer
Easy to use, good for creating complex infrastructures and modernized
Whether Azure Bastion handles network latency and large-scale connections is irrelevant as it is not something that is valid because it is just used as a code for configurations. It would not be right to frame a question where one asks how HTML CSS handles the network connections because network connection, bandwidth, connectivity, and concurrent connections are areas that depend heavily on the infrastructure as opposed to the code. The area revolves around code matters, but infrastructure is the key component. As Azure Bastion is there to create the infrastructure, it is not valid to discuss whether it can handle network latency and large-scale connections. Azure Bastion is a secure tool. I have not seen any AI capabilities in the tool. People can create complex infrastructure and a hierarchy, but it all depends on how they organize their code and files. If they organize it the right way, the entire solution and the entire infrastructure would be smooth enough to be deployed with Azure Bastion. I rate the tool an eight out of ten.
Sameer Bhat - PeerSpot reviewer
Provides resource-based access and security, but time-bound access can be a problem
Entra ID is the core of the identity management that we have. This is the key product that we are using. I am currently also looking into Entra Private Access because we are planning to deploy about 50,000 desktops into Azure and use Azure Virtual Desktop. We would like to give access to the users from the desktop to on-premises applications. I learned that Entra Private Access is a good solution. That is not yet GA, but that is what we are looking for. Entra provides a single pane of glass for managing user access, but because our company also integrates with Nebula API, only administrators use Entra's pane. A normal person who wants to get onboarded can do self-service using Nebula. The features for whitelisting and other things are definitely there. That is what we use specifically. Application IDs, enterprise applications, and all those things are already there, so we have more efficiency. There is also security because we usually do not allow user identities to get direct access to Azure resources. Usually, we use the service principles from Entra ID, so this way, it increases security. Entra has helped to save time for our IT administrators. We tend to automate a lot of things. We can do automation using Graph APIs and save time. It is hard to quantify the time savings, but there has been a medium amount of time savings. Entra has helped to save our organization money. We care about security and risk more than money, but it also saves money. We are premium customers, and because we have a commit-to-consume contract with Microsoft of multi-million dollars, the money does not come into it because we have to consume those resources.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It provides all the security to us. Without getting on the internet, we can access our servers. We can access our desktop through our web browser. We don't need to run the mstsc command and login to the VM. All those things are not required."
"The connection to virtual machines is very useful."
"Overall, I had a very positive experience."
"Azure Bastion is preferable because you just switch it on and off you go."
"As an Azure consultant, for me, it is the best way to give the administrator access as you can manage the permission - including who can access Bastion."
"Azure Bastion eliminates the need for a jump server by providing secure access to servers without hitting the public network."
"The solution's most valuable feature is that it is easy to use...It is modernized, so I can create complex infrastructures."
"Azure Bastion makes it easy to provide quick virtual machine access to our customers."
"Multifactor authentication is valuable."
"The solution integrates well with our infrastructure and other systems without any issues."
 

Cons

"Azure Bastion does its job. However, it would be nice to have the capability to cut and paste across desktops, similar to old-fashioned Remote Desktop emulation."
"While general support is valuable, having a detailed breakdown of the specific issues would contribute to a more streamlined and efficient resolution process."
"We are not able to copy and paste files directly into the server over the patch host. We have to transfer files over to Azure Storage."
"Currently, Azure Bastion does not allow for direct data transfer between desktops. A storage solution must be created to transfer data, and this requires additional permissions like ACL or NFS."
"The protocol speed could be faster."
"You are charged for retrieving your own data."
"There are some challenges because Bastion is more compatible with Edge but not with the other browsers. As an organization, it doesn't make sense that we have to use only Edge. We should be able to access Bastion over Chrome, Mozilla, or Opera. It should be our choice."
"The solution breaks down sometimes."
"We use a third-party API called Nebula API to integrate the account for authorization. The time-bound access area in Entra can be a problem. It can be improved in terms of the granularity of the permissions."
"The solution's pricing and support services need improvement."
 

Pricing and Cost Advice

"It does not save money for us."
"The pricing is a lower decision point than high-quality security for our organization. Better security comes at a cost, but it's worth it, and that's what we tell our customers."
"Azure Bastion's pricing is good."
"The tool is cheaply priced. I would say that the product is free to use."
"The product cost is in the mid to high range."
"We are a Fortune 500 company, so we always negotiate with Microsoft."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Comms Service Provider
8%
Government
8%
Manufacturing Company
7%
Computer Software Company
18%
Financial Services Firm
14%
Government
9%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Azure Bastion?
Azure Bastion makes it easy to provide quick virtual machine access to our customers.
What is your experience regarding pricing and costs for Azure Bastion?
Microsoft's pricing is on the higher side and could be more competitive. Startups and small organizations often prefer AWS ( /products/amazon-aws-reviews ) or GCP due to their lower costs, while la...
What needs improvement with Azure Bastion?
Azure Bastion does its job. However, it would be nice to have the capability to cut and paste across desktops, similar to old-fashioned Remote ( /products/remote-reviews ) Desktop emulation. I am u...
What is your experience regarding pricing and costs for Microsoft Entra Permissions Management?
The product cost is in the mid to high range. You need to have a good budget to implement it, so it is considered fairly expensive for our market. I rate the pricing a seven out of ten.
What needs improvement with Microsoft Entra Permissions Management?
The solution's pricing and support services need improvement.
 

Also Known As

No data available
CloudKnox Permissions Management
 

Overview

Find out what your peers are saying about Azure Bastion vs. Microsoft Entra Permissions Management and other solutions. Updated: July 2025.
865,384 professionals have used our research since 2012.