Advanced Clusters > Setting up Microsoft Azure > Step 5. Allow domains in Azure
  

Step 5. Allow domains in Azure

When the Secure Agent creates an advanced cluster in a Microsoft Azure environment, the cluster nodes need access to certain domains to fetch artifacts, such as machine images, and to access sources and targets to run mappings.
Add the following domains to the outbound allowlists of your network security groups:
*.azure.com
*.azure.net
*.database.windows.net
*.microsoft.com
*.microsoftonline.com
*.windows.net
azure.com
azure.net
ifconfig.me
microsoft.com
microsoftonline.com
windows.net
artifacthub.informaticacloud.com
If you use one of the EMEA PODs, also allow this domain:
artifacthubemea.informaticacloud.com
EMEA PODs include EM West1, EM Central1 Azure, UK, EM SouthEast 1 Azure, ME Central 2 GCP, EM West 2 GCP.
Note: To use the default NTP service configuration, open your firewall and set the default NTP service UDP port to 123 for all outbound servers. If you don't want to use this configuration, you can set up a custom image that has a custom NTP service configuration. For more information, contact Informatica Global Customer Support.