Cloud can be tricky sometimes. Find out what scenarios we've ran into that are worth being mentioned and explained.

Configuring Azure Bastion for Secure Remote Access

Level: 200
Publishing date: 23-Jan-2024
Author: Catalin Popa


Azure Bastion is a managed platform service that provides secure and seamless Remote Desktop Protocol (RDP) and Secure Shell (SSH) access to virtual machines (VMs) directly through the Azure portal. By eliminating the need for public IP addresses and reducing exposure to threats, Azure Bastion ensures a secure remote connection to your Azure VMs. This step-by-step guide will walk you through the process of configuring Azure Bastion for enhanced remote access.


Virtual Network: Have a virtual network in place where your VMs are deployed.

Step 1: Access the Azure Portal

Log in to the Azure portal using your Azure account credentials.

Step 2: Navigate to the Virtual Machine

In the left-hand navigation pane, select "Virtual machines"

Choose the specific VM for which you want to configure Azure Bastion.

Step 3: Enable Azure Bastion

Within the VM's details page, click on the "Bastion" option in the left-hand menu.

Click on the "Enable Azure Bastion" button.

Step 4: Configure Bastion Settings

• In the Azure Bastion configuration page, provide a name for the Azure Bastion resource.

• Choose the virtual network to which you want to add Azure Bastion.

• Configure the subnet settings. Ensure that the subnet you choose is different from the VM subnet.

• Subnet Name: Use the specific name "AzureBastionSubnet" for the subnet dedicated to Azure Bastion.

• Subnet Address range: Define an appropriate address range for the "AzureBastionSubnet." It is recommended to use a separate address range from your VM subnet.

• Set the public IP address settings, either choosing an existing IP or creating a new one.
By adhering to the naming convention and configuring the subnet with the specified name ("AzureBastionSubnet"), you ensure seamless integration with Azure Bastion, facilitating a secure and organized deployment within your virtual network.

Step 5: Review and Create

Review the configuration settings to ensure accuracy.

Click on the "Review + create" button.

After reviewing, click "Create" to initiate the deployment process.

Step 6: Deployment Completion

Wait for the deployment to complete. You can monitor the progress on the deployment page. Once deployed, navigate back to the VM's details page.

Step 7: Access VM Using Azure Bastion

On the VM's details page, click on the "Connect" button.
In the "Connect" pane, select the "Bastion" tab.

Enter the username and password for the VM.

Click on "Connect"

Here you can see RDP connection for this VM will open in a new tab via Bastion that allow you to perform all the actions.


Congratulations! You've successfully configured Azure Bastion for secure remote access to your Azure VM. Azure Bastion provides a centralized and secure way to connect to VMs without exposing them to the public internet. This step-by-step guide simplifies the process, ensuring that you can set up Azure Bastion efficiently and enhance the security of your remote connections in the Azure cloud environment.

Transform your business.
Run adaptive.


Phone: +40 73 523 0005

© Copyright  2019-2024 All Rights Reserved