Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Azure AD Connect services firewall rule

Hi Ladies and Gentlemen,

I've created a firewall rule for my a server (called: MirrorEdge)

Its address is 172.16.11.17 that has services allowed listed here:

https://docs.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-ports

I am getting data going in and out of that server. I try to connect to Azure AD Connect, but I receive a blank sign in box, after I insert my azure global admin credentials in the wizard. Initially I had IE as my default browser, but then I installed Google Chrome, same occurrence. Difference being on Chrome when I access login.microsoft.com on the web browser I can go through the process with no issue. On IE when I try accessing through the browser I get a blank screen as well.

In terms of the firewall rule I setup I can't see the server address associated with the firewall rule ID when I look in the event logs.

Any ideas why not, and also do you think it is a firewall issue?



This thread was automatically locked due to age.
Parents
  • Hi Techplay27

    Please share the snapshot for the block sign issue you are receiving as well share the error or error message you are getting while accessing  Azure AD Connect

    Share the snapshot for working and nonworking scenarios to assist you further.

    "Sophos Partner: Infrassist Technologies Pvt Ltd".

    If a post solves your question please use the 'Verify Answer' button.

  • The Microsoft advisor I was speaking to had advised me to create new global admin account after adding custom domain and reset the password. That was somewhat correct, what he didn’t say was to then login to the azure portal with those credentials, a password change prompt would then appear, once the password was changed from there, only then can it be used with Azure AD Connect. I only realised this after checking the sign-in logs and saw that the sign in attempt with the new account failed due to password expiry, which made me realise what I needed to do.

Reply
  • The Microsoft advisor I was speaking to had advised me to create new global admin account after adding custom domain and reset the password. That was somewhat correct, what he didn’t say was to then login to the azure portal with those credentials, a password change prompt would then appear, once the password was changed from there, only then can it be used with Azure AD Connect. I only realised this after checking the sign-in logs and saw that the sign in attempt with the new account failed due to password expiry, which made me realise what I needed to do.

Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?