Createing Microsoft Entra Domain Services

Mitchell Laframboise 0 Reputation points
2024-06-27T20:33:01.5266667+00:00

Hi,

 I'm struggling to create a domain service because the subnet that I created in my VNet shows as "Undefined" when trying to choose it from the drop down box in the networking section.  The error I get is Your subnet should contain one of the private IP Address Spaces: 192.168.0.0/16, 172.16.0.0/12, or 10.0.0.0/8. While you can create public IPs, we recommend considering the associated risks before proceeding.  But my subnet is within those ranges?  I don't understand... any help would be appreciated.
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,366 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Akhilesh 6,985 Reputation points Microsoft Vendor
    2024-07-01T14:46:08.6233333+00:00

    Hi @Mitchell Laframboise

    Thank you for reaching out to the Microsoft Q&A platform!

    I understand that you are unable to Crete a domain service because the subnet that you created in my VNet shows as "Undefined" could you please elaborate the steps you followed to create VNet, and the error screen shot what you are getting.

    The error you see about "Your subnet should contain one of the private IP Address Spaces: 192.168.0.0/16, 172.16.0.0/12, or 10.0.0.0/8. While you can create public IPs, we recommend considering the associated risks before proceeding" is a recommendation for risk protection.

    The other side about the subnet the range must be unique within the address space and can't overlap with other subnet address ranges in the virtual network. You must specify the address space by using Classless Inter-Domain Routing (CIDR) notation. For example, in a virtual network with address space 10.0.0.0/16, you might define a subnet address space of 10.0.0.0/22. The smallest range you can specify is /29, which provides eight IP addresses for the subnet. Azure reserves the first and last address in each subnet for protocol conformance, and three more addresses for Azure service usage. So defining a subnet with a /29 address range gives three usable IP addresses in the subnet. If you plan to connect a virtual network to a virtual private network (VPN) gateway, you must create a gateway subnet. For more information, see Gateway subnet.

    For more info, please read https://video2.skills-academy.com/en-us/azure/virtual-network/virtual-network-manage-subnet?tabs=azure-portal#add-a-subnet:~:text=Subnet%20address%20range

    Hope this helps. Do let us know if you any further queries.

    Thanks,

    Akhilesh.

    ------------ If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further query do let us know.