An Azure service that provides private connectivity from a virtual network to Azure platform as a service, customer-owned, or Microsoft partner services.
Hi _da_asad.taj,
Thx for sharing urs issue here at Q&A portal.
If the default msappproxy.net External URL is still NXDOMAIN after 4+ days, while the connector is healthy and bootstrap DNS resolves, this looks more like App Proxy runtime DNS publishing stuck on the service side than a connector/backend/auth issue.
Since users never reach pre-auth and there are no failed sign-ins, auth config prob isn’t the blocker. The request is dying before Entra can even see it. I’d open a Microsoft Entra / App Proxy support case and include tenant ID, app object ID, connector group, External URL, region, UTC creation time, and DNS results from 8.8.8.8 / 1.1.1.1. Ask them to check whether the tenant runtime endpoint and app hostname were published in backend DNS.
Nothing else on ur connector will fix NXDOMAIN for the public External URL. This needs backend re-publish / tenant provisioning check from MS.
Rgds,
Alex
&
If my answer was helpful pls mark it and additional thx if u follow me at Q&A portal
and at my blog https://ctrlaltdel.blog/