Additional Microsoft Entra services and features related to identity, access, and network security
Entra Domain Services are delivered as a managed PaaS service, so Microsoft does not expose the underlying virtual machines or their network interfaces. Effectively, AFAIK, you'd not be able to reliably identify the MAC addresses of the managed domain controllers from the Entra portal, Azure portal, or Azure networking tools.
The LDAP connection would need to be established by relying on an IP address/name - MAC addresses in Azure are not considered stable identifiers for managed services and may change during maintenance, failover, or backend platform operations.
If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.
hth
Marcin