Applies To: Nerdio for Azure
When you first provision a new NFA account, you need to authorize Nerdio to connect to your:
- Microsoft Azure tenant
- Office 365 tenant
During the provisioning process, Nerdio creates two user accounts – one for Azure and one for Office 365. Since Nerdio integrates with Azure and Office 365 via APIs and Powershell, enabling MFA can restrict access to Azure or Office 365. To prevent that from happening, you must whitelist this subnet: 184.108.40.206/24. See this KB article from Microsoft for more info on Trusted IPs
Note: If you implement Conditional Access policy to prevent PowerShell access by non-authorized users, you must exclude NerdioAzureAdminXXXX and NerdioO365AdminXXXX users from the policy.