Share via

Support for Certificate Based Authentication with Azure Bastion?

JohnSebastian-3934 581 Reputation points
2025-11-25T18:22:45.6766667+00:00

First question:

Are there any plans on supporting Certificate Based Authentication with Azure Bastion?

Currently certificates to not work to authenticate on a host, only username/password.

Federal NIST Controls are requiring Phishing Resistant device authentication and I need to explain to my Cyber Team why I cannot do that with Azure Bastion service when connecting to a host.

Second question:

Are there any plans to support connecting to Entra ID joined VMs with the Azure Bastion service? I have two Entra ID joined Windows VMs. In order to connect to them, I have to actually RDP from another host after logging into Azure with the az login command first. This is a nightmare. Why wouldn't connecting to Entra ID joined hosts using the Bastion service be one of the first requirements to support?

Microsoft Security | Microsoft Entra | Microsoft Entra ID

Answer accepted by question author

Deleted

This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


Comments have been turned off. Learn more

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.