Hello Jakub Ozga
We understand that your user is experiencing an access issue when trying to connect to Bastion.
Based on the error screenshot, it appears that your employee does not have the necessary permissions to access Azure Bastion.
Here are some steps you can take to help resolve the issue:
1.Make sure that the guest user has been granted the appropriate role assignments for Azure Bastion. If just-in-time (JIT) access is enabled, the guest may need additional permissions. You can refer to the permissions listed in the Azure Bastion documentation to ensure they have access.
2.Ensure the employee has one of the following roles at the VM or resource group level:
- Reader + Virtual Machine User Login
- Virtual Machine Administrator Login
- Contributor (if broader access is acceptable)
3.When signing in, ensure that they are using the correct User Principal Name (UPN) format: ******@domain.com
. Azure Bastion requires this format for domain-joined virtual machine sign-ins.
Also Confirm that there are no network restrictions or firewall rules that might be blocking access.
I hope this helps! If these answers your query, do click the "Upvote" and click "Accept the answer" of which might be beneficial to other community members reading this thread.
If the above is unclear or you are unsure about something, please add a comment below.