This commit is contained in:
Cristian Edwards 2024-07-17 15:59:43 +02:00
Родитель a5c0aeb15b
Коммит 7689bb5b2d
3 изменённых файлов: 140 добавлений и 143 удалений

Просмотреть файл

@ -55,52 +55,51 @@ This page provides a comprehensive overview of the necessary endpoints for deplo
| 47 |Azure Stack HCI authentication | graph.windows.net | 443 | For Graph authentication, token fetch, and validation. |
| 48 |Azure Stack HCI authentication | graph.microsoft.com | 443 | For Graph authentication and Azure Resource Bridge RBAC. |
| 49 |Azure Stack HCI authentication | login.windows.net | 443 | For Microsoft Entra ID. |
| 50 |Azure Stack HCI authentication | login.microsoftonline.com | 443 | For Microsoft Entra ID. |
| 51 |Azure Stack HCI authentication | australiaeast.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 52 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Only required for initial validation when not deploying in eastus. |
| 53 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 54 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 55 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 56 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 57 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 58 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 59 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 60 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 61 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 62 |Azure Stack HCI deployment | yourhcikeyvaultname.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 63 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 64 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 65 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 66 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 67 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 68 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 69 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | prod5.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 73 |Azure Stack HCI monitoring | australiaeast-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 74 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Only required for initial validation when not deploying in eastus. |
| 75 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 76 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 77 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 78 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 79 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 80 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 81 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 82 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. v |
| 83 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 87 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 88 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 89 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 90 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 91 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 92 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 93 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 94 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 95 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 96 |Azure Stack HCI AKS infra | *. blob.storage.azure.net | 443 | To access blob storage. |
| 97 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | To access blob storage. |
| 98 |Azure Stack HCI AKS infra | australiaeast.obo.arc.azure.com:8084 | 443 | To access blob storage. |
| 50 |Azure Stack HCI authentication | australiaeast.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 51 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Only required for initial validation when not deploying in eastus. |
| 52 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 53 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 54 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 55 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 56 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 57 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 58 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 59 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 60 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 61 |Azure Stack HCI deployment | yourhcikeyvaultname.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 62 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 63 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 64 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 65 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 66 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 67 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 68 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 69 |Azure Stack HCI monitoring | prod5.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI monitoring | australiaeast-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 73 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Only required for initial validation when not deploying in eastus. |
| 74 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 75 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 76 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 77 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 78 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 79 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 80 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 81 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. v |
| 82 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 83 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 87 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 88 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 89 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 90 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 91 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 92 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 93 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 94 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 95 |Azure Stack HCI AKS infra | *. blob.storage.azure.net | 443 | To access blob storage. |
| 96 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | To access blob storage. |
| 97 |Azure Stack HCI AKS infra | australiaeast.obo.arc.azure.com:8084 | 443 | To access blob storage. |

Просмотреть файл

@ -53,49 +53,48 @@ This page provides a comprehensive overview of the necessary endpoints for deplo
| 45 |Azure Stack HCI authentication | graph.windows.net | 443 | For Graph authentication, token fetch, and validation. |
| 46 |Azure Stack HCI authentication | grpah.microsoft.com | 443 | For Graph authentication and Azure Resource Bridge RBAC. |
| 47 |Azure Stack HCI authentication | login.windows.net | 443 | For Microsoft Entra ID. |
| 48 |Azure Stack HCI authentication | login.microsoftonline.com | 443 | For Microsoft Entra ID. |
| 49 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 50 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 51 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 52 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 53 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 54 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 55 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 56 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 57 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 58 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 59 |Azure Stack HCI deployment | <yourhcikeyvaultname>.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 60 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 61 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 62 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 63 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 64 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 65 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 66 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 67 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 68 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 69 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 73 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 74 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 75 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 76 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 77 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. |
| 78 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 79 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 80 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 81 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 82 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 83 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 87 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 88 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 89 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 90 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 91 |Azure Stack HCI AKS infra | *. blob.storage.azure.net | 443 | To access blob storage. |
| 92 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | To access blob storage. |
| 93 |Azure Stack HCI AKS infra | eastus.obo.arc.azure.com:8084 | 443 | To access blob storage. |
| 48 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 49 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 50 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 51 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 52 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 53 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 54 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 55 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 56 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 57 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 58 |Azure Stack HCI deployment | <yourhcikeyvaultname>.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 59 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 60 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 61 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 62 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 63 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 64 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 65 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 66 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 67 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 68 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 69 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 73 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 74 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 75 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 76 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. |
| 77 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 78 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 79 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 80 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 81 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 82 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 83 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 87 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 88 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 89 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 90 |Azure Stack HCI AKS infra | *. blob.storage.azure.net | 443 | To access blob storage. |
| 91 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | Required for AKS extensions after initial deployment. |
| 92 |Azure Stack HCI AKS infra | eastus.obo.arc.azure.com:8084 | 443 | Required for AKS extensions after initial deployment. |

Просмотреть файл

@ -55,52 +55,51 @@ This page provides a comprehensive overview of the necessary endpoints for deplo
| 47 |Azure Stack HCI authentication | graph.windows.net | 443 | For Graph authentication, token fetch, and validation. |
| 48 |Azure Stack HCI authentication | graph.microsoft.com | 443 | For Graph authentication and Azure Resource Bridge RBAC. |
| 49 |Azure Stack HCI authentication | login.windows.net | 443 | For Microsoft Entra ID. |
| 50 |Azure Stack HCI authentication | login.microsoftonline.com | 443 | For Microsoft Entra ID. |
| 51 |Azure Stack HCI authentication | westeurope.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 52 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Only required for initial validation when not deploying in eastus. |
| 53 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 54 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 55 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 56 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 57 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 58 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 59 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 60 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 61 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 62 |Azure Stack HCI deployment | yourhcikeyvaultname.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 63 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 64 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 65 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 66 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 67 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 68 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 69 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | prod5.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 73 |Azure Stack HCI monitoring | westeurope-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 74 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Only required for initial validation when not deploying in eastus. |
| 75 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 76 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 77 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 78 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 79 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 80 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 81 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 82 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. |
| 83 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 87 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 88 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 89 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 90 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 91 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 92 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 93 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 94 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 95 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 50 |Azure Stack HCI authentication | westeurope.login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens for logging into Azure. |
| 51 |Azure Stack HCI authentication | eastus.login.microsoft.com | 443 | Only required for initial validation when not deploying in eastus. |
| 52 |Azure Stack HCI benefits | crl3.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list. check. |
| 53 |Azure Stack HCI benefits | crl4.digicert.com | 80 | Enables the platform attestation service on Azure Stack HCI to perform a certificate revocation list check. |
| 54 |Azure Stack HCI deployment | www.powershellgallery.com | 443 | To install required PSGallery modules for Arc registration. |
| 55 |Azure Stack HCI deployment | psg-prod-eastus.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 56 |Azure Stack HCI deployment | onegetcdn.azureedge.net | 443 | To install required PSGallery modules for Arc registration. |
| 57 |Azure Stack HCI deployment | portal.azure.com | 443 | For Azure Stack HCI deployment |
| 58 |Azure Stack HCI deployment | *.blob.core.windows.net | 443 | For firewall access to the Azure blob container, if using a cloud witness as the cluster witness. |
| 59 |Azure Stack HCI deployment | hciarcvmscontainerregistry.azurecr.io | 443 | For Arc VM container registry on Azure Stack HCI. Required only for Azure Stack HCI, version 23H2. |
| 60 |Azure Stack HCI deployment | azurestackreleases.download.prss.microsoft.com | 443 | For Azure Stack HCI Arc extensions deployment. |
| 61 |Azure Stack HCI deployment | yourhcikeyvaultname.vault.azure.net | 443 | Access to key vault to access Azure Stack HCI deployment secrets. |
| 62 |Azure Stack HCI deployment | settings-win.data.microsoft.com | 443 | For Azure Stack HCI deployment |
| 63 |Azure Stack HCI diag & billing | dp.stackhci.azure.com | 443 | For Data plane diagnostics and billing data. |
| 64 |Azure Stack HCI diag & billing | licensing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 65 |Azure Stack HCI diag & billing | billing.platform.edge.azure.com | 443 | For Data plane licensing billing data. Required only for Azure Stack HCI, version 23H2. |
| 66 |Azure Stack HCI diag & billing | azurestackhci.azurefd.net | 443 | Previous URL for Data plane for backwards compatibility. |
| 67 |Azure Stack HCI management | management.azure.com | 443 | Initial HCI cluster registration, bootstrapping and management operations. |
| 68 |Azure Stack HCI monitoring | global.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 69 |Azure Stack HCI monitoring | prod5.prod.microsoftmetrics.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 70 |Azure Stack HCI monitoring | dc.services.visualstudio.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 71 |Azure Stack HCI monitoring | qos.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 72 |Azure Stack HCI monitoring | westeurope-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 73 |Azure Stack HCI monitoring | eastus-shared.prod.warm.ingest.monitor.core.windows.net | 443 | Only required for initial validation when not deploying in eastus. |
| 74 |Azure Stack HCI monitoring | gcs.prod.monitoring.core.windows.net | 443 | Used for metrics and monitoring telemetry traffic. |
| 75 |Azure Stack HCI monitoring | adhs.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 76 |Azure Stack HCI monitoring | v20.events.data.microsoft.com | 443 | Used for metrics and monitoring telemetry traffic. |
| 77 |Azure Stack HCI Updates discovery| aka.ms | 443 | For resolving addresses to discover Azure Stack HCI, version 23H2 and Solution Builder Extension Updates. |
| 78 |Azure Stack HCI Updates discovery| redirectiontool.trafficmanager.net | 443 | Underlying service that implements usage data tracking for the aka.ms redirection links. |
| 79 |Azure Stack HCI Updates download | fe3.delivery.mp.microsoft.com | 443 | For updating Azure Stack HCI, version 23H2. |
| 80 |Azure Stack HCI Updates download | tlu.dl.delivery.mp.microsoft.com | 80 | For updating Azure Stack HCI, version 23H2. |
| 81 |Microsoft official web site | www.microsoft.com | 80, 443 | Microsoft web site. |
| 82 |Microsoft Update | windowsupdate.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 83 |Microsoft Update | *.download.windowsupdate.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 84 |Microsoft Update | wustat.windows.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 85 |Microsoft Update | ntservicepack.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 86 |Microsoft Update | go.microsoft.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 87 |Microsoft Update | *.delivery.mp.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 88 |Microsoft Update | *.windowsupdate.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 89 |Microsoft Update | *.windowsupdate.com | 80 | For Microsoft Update, allowing the OS to receive updates. |
| 90 |Microsoft Update | *.update.microsoft.com | 80, 443 | For Microsoft Update, allowing the OS to receive updates. |
| 91 |Microsoft Defender | *.endpoint.security.microsoft.com | 443 | Required only if using Microsoft Defender extension (MDE.windows). |
| 92 |Azure Stack HCI authentication | www.office.com | 443 | Used for graph authentication. |
| 93 |Azure Stack HCI authentication | login.microsoft.com | 443 | Required to fetch and update Azure Resource Manager tokens. |
| 94 |Azure Stack HCI AKS infra | pythonhosted.org | 443 | Used to download Az CLI and Az CLI extensions. |
| 95 |Azure Stack HCI AKS infra | *. blob.storage.azure.net | 443 | To access blob storage. |
| 96 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | To access blob storage. |
| 97 |Azure Stack HCI AKS infra | westeurope.obo.arc.azure.com:8084 | 443 | To access blob storage. |
| 96 |Azure Stack HCI AKS infra | dl.k8s.io | 443 | Required for AKS extensions after initial deployment. |
| 97 |Azure Stack HCI AKS infra | westeurope.obo.arc.azure.com:8084 | 443 | Required for AKS extensions after initial deployment. |