Jump to content

Recommended Posts

Posted

I'm struggling a little with the initial setup of PTA and SSO using the AD Connect tool.

 

After the point of selecting PTA and SSO, I receive the following promot, without any field to input local AD credentials.

 

Capture.PNG

Posted
I am not sure why I just changed from domain users to domain admins as the primary group and it worked, it took me a while to resolve as every thing I found pointed to firewall blocking access to *.msappproxy.net:9090
Posted

There's quite a few addresses you need to make sure are clear:

 

mscrl.microsoft.com HTTP/80 Used to download CRL lists.

*.verisign.com HTTP/80 Used to download CRL lists.

*.entrust.com HTTP/80 Used to download CRL lists for MFA.

*.windows.net HTTPS/443 Used to sign in to Azure AD.

secure.aadcdn.microsoftonline-p.com HTTPS/443 Used for MFA.

*.microsoftonline.com HTTPS/443 Used to configure your Azure AD directory and import/export data.

 

*.blob.core.windows.net (port 443)

*.queue.core.windows.net (port 443)

*.table.core.windows.net(port 443)

*.servicebus.windows.net (port: 5671 recommended, if 5671 is blocked, the agent falls back to 443)

*.adhybridhealth.azure.com(port 443)

policykeyservice.dc.ad.msft.net (port 443)

login.windows.net (port 443)

login.microsoftonline.com (port 443)

secure.aadcdn.microsoftonline-p.com (port 443)

management.azure.com (port 443)

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...