Enable Azure Domain Services and authentication (MFA) for VM in the cloud

André Borgeld 431 Reputation points
2023-05-05T06:27:40.02+00:00

Now we have the following scenario

  1. Azure domain services
  2. Secure Hub (Third party firewall)
  3. Spoke (workload), a windows server VM

I have added 3389 RDP and 445 Smb to reach my machine (works fine). But the machine cannot reach the Azure Domain services for a Domain join and logon.

What (ports/url) do i need to open to join the server to the Azure domain and logon with Azure credentials? It has to be to be as secure as possible

Windows for business | Windows Server | User experience | Other
Microsoft Security | Microsoft Entra | Other
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Andy David - MVP 159.7K Reputation points MVP Volunteer Moderator
    2023-05-05T12:50:51.0766667+00:00

  2. Limitless Technology 45,126 Reputation points
    2023-05-05T16:00:37.0233333+00:00

    Hello Andre,

    Thank you for your question and for reaching out with your question today.

    General Azure services use standard TCP ports for HTTP (80) and HTTPS (443). However, the link below may be helpful for finding the troublesome port in your system:

    https://learn.microsoft.com/azure/active-directory/hybrid/connect/reference-connect-ports

    If the reply was helpful, please don’t forget to upvote or accept as answer.

    Best regards.


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.