Open marshalexander99 opened 7 months ago
The error seems to be specific to the resource provider. @marshalexander99 do you mind opening a support ticket against the Microsoft.Compute
provider?
Where's the best place to do that, Azure portal? The above is currently in a visual studio subscription for development purposes so I only have paid support options.
Yeah, you should be able to create a support request through portal.
unfortunately not
Unfortunately, creating a support ticket is not possible without a paid subscription, but this is an RP issue, we'll try to route it to the correct team
Bicep version v0.25.23
Describe the bug Deploying the runcommand resource against a VM using a domain joined run as account to perform activity on the domain fails. In this case it is simply a script calling the get-addomain command on a domain controller to retrieve domain info to pass to an azure command.
Bicep resource
Powershell script being called
Error message produced:
To Reproduce deploy the above resource to use the script against a domain controller. Running against a server with AD PowerShell installed produces the following error:
Additional context I suspect the issue here is with the managed run command execution not performing elevation however I cannot see anywhere else to log this. Now I obviously don't want to have to run any domain commands against a domain controller in azure, a management server would be preferable but there seems to be a double hop employed when going via that route based off the error above. All the commands function perfectly when run locally. The mechanism employed here has some limitations which aren't well documented. We wanted to use this method as it allows multiple commands to be run. custom script extensions require deployment and removal in order to use again. This is part of a hosted environment where multiple resources are deployed for customers to add some context.