Routing for user internet traffic that goes through the expressroute and consumes azure internet.

Fakri SLIMANE 26 Reputation points
2022-07-21T13:33:30.723+00:00

Hello,

I would like to set up a route that will allow our on-premise company users to be able to access the internet from Azure and not from the On-premise. I would like to direct the outgoing flow to access the internet via the expressRoute, arriving on azure then leaving from the firewall of the hub_dmz part so that users consume the internet from only on Azure. Here is a diagram representing my project:
223191-flux-internet-sortant-par-azure.jpg

Can you give me a solution because I can't do it, and our microsoft partner who manages our azure support part, didn't find me a solution.

Thank you for your patience.
Fakri.

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,137 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
322 questions
Azure Firewall Manager
Azure Firewall Manager
An Azure service that provides central network security policy and route management for globally distributed, software-defined perimeters.
83 questions
Windows 10 Network
Windows 10 Network
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Network: A group of devices that communicate either wirelessly or via a physical connection.
2,270 questions
0 comments No comments
{count} vote

4 answers

Sort by: Most helpful
  1. msrini-MSFT 9,256 Reputation points Microsoft Employee
    2022-07-22T09:35:36.587+00:00

    Hi,

    Currently you will not be able to force Internet traffic to Azure via ER. But you can achieve this using Azure vWAN.

    Reference: https://learn.microsoft.com/en-us/azure/virtual-wan/how-to-forced-tunnel
    https://learn.microsoft.com/en-us/azure/route-server/vmware-solution-default-route

    Regards,
    Karthik Srinivas

    0 comments No comments

  2. Limitless Technology 39,351 Reputation points
    2022-07-26T07:27:40.643+00:00

    Hi there,

    You can try to Connect an on-premises network to a Microsoft Azure virtual network and then route it to use the Internet from Azure.

    Your virtual machines in Azure don't have to be isolated from your on-premises environment. To connect Azure virtual machines to your on-premises network resources, you must configure a cross-premises Azure virtual network.

    Some useful article links that might help you in getting some insights are listed below.

    Connect an on-premises network to a Microsoft Azure virtual network

    https://learn.microsoft.com/en-us/microsoft-365/enterprise/connect-an-on-premises-network-to-a-microsoft-azure-virtual-network?view=o365-worldwide

    Enable public internet for Azure VMware Solution workloads

    https://learn.microsoft.com/en-us/azure/azure-vmware/enable-public-internet-access

    Tutorial: Grant user access to Azure resources using the Azure portal

    https://learn.microsoft.com/en-us/azure/role-based-access-control/quickstart-assign-role-user-portal

    ---------------------------------------------------------------------------------------------------------------------------------

    --If the reply is helpful, please Upvote and Accept it as an answer–

    0 comments No comments

  3. Fakri SLIMANE 26 Reputation points
    2022-07-30T12:00:56.153+00:00

    Hello, sorry for responding late.

    Thank you for your answer, I will test your ideas and I will come back to you to confirm if this is functional for me.

    0 comments No comments

  4. parisv 21 Reputation points
    2022-11-08T09:14:48.757+00:00

    @Fakri SLIMANE did you get anywhere with this? I'm interested in doing something similar.

    0 comments No comments