AAD Sync - cant connect to port 3268

llantocharlesharold@gmail.com 1 Reputation point
2021-02-17T18:03:37.623+00:00

I am trying to sync local AD to Azure AD but it is failing to do so. So I did an AAD Connect Connectivity test and found out that one of the ports (3268) required isn't reachable.

I have tried the following:

  1. Disable all firewall
  2. Created Firewall inbound exception for tcp/udp 3268
  3. Disable Anti-Virus

Am I missing something, I did try to use netstat to look for the port and I cannot see any information about it.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,633 questions
{count} votes

1 answer

Sort by: Most helpful
  1. llantocharlesharold@gmail.com 1 Reputation point
    2021-02-24T22:24:02.4+00:00

    Upon further troubleshooting, I was able to figure out that our GC is also not working. This is due to port 3268 not available. The issue cannot be fixed by restarting the device and the only resolution is restarting the NETLOGON service.

    With port 3268 fixed, I was able to connect our on-prem AD to Azure AD using AAD Connect.

    0 comments No comments