Azure Cloud Shell to connect to Sovereign Clouds #5026

Open
opened 2026-01-31 00:03:20 +00:00 by claunia · 11 comments
Owner

Originally created by @davemedvitz on GitHub (Nov 15, 2019).

The Azure Cloud Shell component needs to be able to connect to Azure Clouds other than the default Commercial cloud. Currently the relevant URL endpoints are hard coded to Commercial.

Originally created by @davemedvitz on GitHub (Nov 15, 2019). The Azure Cloud Shell component needs to be able to connect to Azure Clouds other than the default Commercial cloud. Currently the relevant URL endpoints are hard coded to Commercial.
claunia added the Issue-TaskProduct-TerminalArea-AzureShell labels 2026-01-31 00:03:20 +00:00
Author
Owner

@DHowett-MSFT commented on GitHub (Nov 15, 2019):

Yeah, fair point. Marking up for the backlog. 😄 Thanks

@DHowett-MSFT commented on GitHub (Nov 15, 2019): Yeah, fair point. Marking up for the backlog. :smile: Thanks
Author
Owner

@jmcarthurcorr commented on GitHub (Nov 18, 2019):

Giving a +1 to this issue. Logging in with portal.azure.us tenant gives the dreaded

AADSTS50011: The reply url specified in the request does not match the reply urls configured for the application: '245e1dee-74ef-4257-a8c8-8208296e1dfd'.

@jmcarthurcorr commented on GitHub (Nov 18, 2019): Giving a +1 to this issue. Logging in with portal.azure.us tenant gives the dreaded > AADSTS50011: The reply url specified in the request does not match the reply urls configured for the application: '245e1dee-74ef-4257-a8c8-8208296e1dfd'.
Author
Owner

@petkahl commented on GitHub (Jul 31, 2020):

I see from the duplicate issue that this is waiting on compliance as much as code. Is there anything those of us on the outside could do to help (write code and queue up a PR, etc?) or is it really just a matter of waiting for the compliance/legal part to be handled?

@petkahl commented on GitHub (Jul 31, 2020): I see from the duplicate issue that this is waiting on compliance as much as code. Is there anything those of us on the outside could do to help (write code and queue up a PR, etc?) or is it really just a matter of waiting for the compliance/legal part to be handled?
Author
Owner

@DHowett commented on GitHub (Jul 31, 2020):

This is all compliance stuff; the real work involved is in the MS first-party identity portal where we have to onboard to the sovereign clouds. That should be quick once we get signoff on security and accessibility for our service 😄

@DHowett commented on GitHub (Jul 31, 2020): This is all compliance stuff; the real work involved is in the MS first-party identity portal where we have to onboard to the sovereign clouds. That should be quick once we get signoff on security and accessibility for our service :smile:
Author
Owner

@davemedvitz commented on GitHub (Dec 8, 2020):

Do know if there is progress being made on the compliance pieces?

@davemedvitz commented on GitHub (Dec 8, 2020): Do know if there is progress being made on the compliance pieces?
Author
Owner

@DHowett commented on GitHub (Dec 8, 2020):

Unfortunately, I don't have any news to share on that front.

@DHowett commented on GitHub (Dec 8, 2020): Unfortunately, I don't have any news to share on that front.
Author
Owner

@hphungnal commented on GitHub (Jun 7, 2021):

Hello, just checking in to see if there is any update on this issue? Would love for it to work with https://microsoft.com/deviceloginus
Thanks!

@hphungnal commented on GitHub (Jun 7, 2021): Hello, just checking in to see if there is any update on this issue? Would love for it to work with https://microsoft.com/deviceloginus Thanks!
Author
Owner

@benatsb commented on GitHub (Apr 25, 2022):

Hello, any updates on this capability?

@benatsb commented on GitHub (Apr 25, 2022): Hello, any updates on this capability?
Author
Owner

@zadjii-msft commented on GitHub (Apr 25, 2022):

Nope. We'll make sure to update this thread when there is. In the meantime, might I recommend the Subscribe button?
image
That way you'll be notified of any updates to this thread, without needlessly pinging everyone on this thread ☺️

@zadjii-msft commented on GitHub (Apr 25, 2022): Nope. We'll make sure to update this thread when there is. In the meantime, might I recommend the Subscribe button? ![image](https://user-images.githubusercontent.com/18356694/91237459-5cbb0c80-e700-11ea-9347-b9b1ec2813b1.png) That way you'll be notified of any updates to this thread, without needlessly pinging everyone on this thread ☺️
Author
Owner

@zadjii-msft commented on GitHub (May 23, 2022):

The crazy idea from sync: Rather than onboarding the Terminal's AppID onto each cloud ourselves, we enable configuration options s.t. the user can specify their own AppID. That way, each entity could onboard and approve the Terminal themselves, synthesize their own appid for the cloud shell, and then users would just add that string to their settings file.

It's more burden on the users, for sure, but would allow each individual cloud the ability to control access to the azure cloud shell themselves.

@zadjii-msft commented on GitHub (May 23, 2022): The crazy idea from sync: Rather than onboarding the Terminal's AppID onto each cloud ourselves, we enable configuration options s.t. the user can specify their own AppID. That way, each entity could onboard and approve the Terminal themselves, synthesize their own appid for the cloud shell, and then users would just add that string to their settings file. It's more burden on the users, for sure, but would allow each individual cloud the ability to control access to the azure cloud shell themselves.
Author
Owner

@jamesseiwert commented on GitHub (Aug 30, 2023):

Is there any update on this? I was hoping with the cross cloud access now this would be resolved. I also like the idea from @zadjii-msft about enabling configuration options as a secondary idea. Most microsoft apps can auth can handle both commercial and goc clouds now

@jamesseiwert commented on GitHub (Aug 30, 2023): Is there any update on this? I was hoping with the cross cloud access now this would be resolved. I also like the idea from @zadjii-msft about enabling configuration options as a secondary idea. Most microsoft apps can auth can handle both commercial and goc clouds now
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/terminal#5026