Start here. This is the direct spoken answer to practice first.
Overview
A private endpoint changes the network path, but identity and application authorization still apply.
I place the application in an approved network and connect to the managed AI data-plane endpoint through the platform's private connectivity option. Private DNS must resolve the normal service name to the private address from every calling network. Public access is disabled when policy requires it, while workload identity and least privilege still authorize each call.