Skip to content

Commit 3bb2e1e

Browse files
committed
testing
1 parent 88733cd commit 3bb2e1e

File tree

1 file changed

+0
-18
lines changed

1 file changed

+0
-18
lines changed

articles/active-directory/cloud-sync/how-to-prerequisites.md

Lines changed: 0 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -172,24 +172,6 @@ If there's a firewall between your servers and Azure AD, configure the following
172172
- If you are unable to add connections, allow access to the [Azure datacenter IP ranges](https://www.microsoft.com/download/details.aspx?id=41653), which are updated weekly.
173173
174174
175-
176-
177-
178-
179-
180-
181-
182-
## US government cloud firewall and proxy requirements
183-
Use the following information for URLS when installing the Azure AD Connect provisioning agent against the government cloud.
184-
185-
If your firewall or proxy allows you to specify safe suffixes, add the following connections:
186-
187-
|URL |How it's used|
188-
|-----|-----|
189-
|&#42;.msappproxy.us</br>&#42;.servicebus.usgovcloudapi.net|The agent uses these URLs to communicate with the Azure AD cloud service. |
190-
|`mscrl.microsoft.us:80` </br>`crl.microsoft.us:80` </br>`ocsp.msocsp.us:80` </br>`www.microsoft.us:80`| The agent uses these URLs to verify certificates.|
191-
|login.windows.us </br>secure.aadcdn.microsoftonline-p.com </br>&#42;.microsoftonline.us </br>&#42;.microsoftonline-p.us </br>&#42;.msauth.net </br>&#42;.msauthimages.net </br>&#42;.msecnd.net</br>&#42;.msftauth.net </br>&#42;.msftauthimages.net</br>&#42;.phonefactor.net </br>enterpriseregistration.windows.net</br>management.azure.com </br>policykeyservice.dc.ad.msft.net</br>ctldl.windowsupdate.us:80| The agent uses these URLs during the registration process.
192-
193175
## NTLM requirement
194176
195177
You should not enable NTLM on the Windows Server that is running the Azure AD Connect Provisioning Agent and if it is enabled you should make sure you disable it.

0 commit comments

Comments
 (0)