MxB TV Cloud Setup Using Azure Hybrid Connection

How Azure Hybrid Connection Works

Hybrid Connections requires a relay agent to be deployed where it can reach both the desired endpoint as well as to Azure. The relay agent, Hybrid Connection Manager (HCM), calls out to Azure Relay over port 443. From the web app site, the App Service infrastructure also connects to Azure Relay on your application’s behalf. Through the joined connections, your app is able to access the desired endpoint. The connection uses TLS 1.2 for security and shared access signature (SAS) keys for authentication and authorization.

alt text When your app makes a DNS request that matches a configured Hybrid Connection endpoint, the outbound TCP traffic will be redirected through the Hybrid Connection.

Empact IT Steps

Add and Create Hybrid Connections in your app

To create a Hybrid Connection, go to the Azure portal and select your app. Select Networking > Configure your Hybrid Connection endpoints. Here you can see the Hybrid Connections that are configured for your app.

alt text

To add a new Hybrid Connection, select [+] Add hybrid connection. You’ll see a list of the Hybrid Connections that you already created within your subscription. Select the hybrid connection you need for your app and add them to your app.

alt text

If you want to create a new Hybrid Connection, select Create new hybrid connection. Specify the:

alt text

Get Gateway Connection String

Go to the hybrid connections page of your app and click on the hybrid connection you have just added. Click on it and you will see the properties of the hybrid connection.

alt text

From the properties you will gate the gateway connection string to which will allow hybrid connection manager to access you hybrid connection.

Client Steps

Download and Set Up Hybrid Connection Manager

The Hybrid Connections feature requires a relay agent in the network that hosts your Hybrid Connection endpoint. That relay agent is called the Hybrid Connection Manager (HCM).

This tool runs on Windows Server 2012 and later. The HCM runs as a service and connects outbound to Azure Relay on port 443.

To download click on the link below.

Manually add a Hybrid Connection

To enable someone outside your subscription to host an HCM instance for a given Hybrid Connection for instance Empactit they will have to send over a connection string that’s been mapped to a specified service i.e. HOST mxb44.empactit.com on PORT 8080. To use that string, select Enter Manually in the HCM, and paste in the gateway connection string.

Manually add a connection string