669 questions with Azure Firewall tags

Sort by: Updated
1 answer

Azure firewall logging traffic in a hub-and-spoke network

Hi, A similar sort of setup and query to this thread here, however I have a more specific question: https://learn.microsoft.com/en-us/answers/questions/1322184/azure-firewall-traffic-logging-for-route-based-vpn We have Azure Firewall logging all traffic…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
asked 2024-10-17T14:27:45.68+00:00
Eddie Vincent 0 Reputation points
commented 2024-10-18T18:10:44.6166667+00:00
Rohith Vinnakota 605 Reputation points Microsoft Vendor
2 answers One of the answers was accepted by the question author.

Azure Firewall rule limits

Hello, In our environment it is expected to reach the rule limits (20,000 unique source/destinations in network rules) and i know if i exceeded the limits this might impact my performance. Now i need to know what my options will be if i need more rules…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-10-10T11:57:30.5033333+00:00
Tarek Metwally 40 Reputation points
accepted 2024-10-18T12:38:39.55+00:00
Tarek Metwally 40 Reputation points
0 answers

How to Setup Azure OpenAI for Databricks running into error Error code: 403 - {'error': {'code': '403', 'message': 'Access denied due to Virtual Network/Firewall rules.'}}

After creating a new resource for Azure OpenAI service , We ran into this error not able to access OpenAI via api_key and endpoint (private) due to the error message indicates that access is denied due to Virtual Network/Firewall rules. How can we…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Databricks
Azure Databricks
An Apache Spark-based analytics platform optimized for Azure.
2,181 questions
Azure OpenAI Service
Azure OpenAI Service
An Azure service that provides access to OpenAI’s GPT-3 models with enterprise capabilities.
3,132 questions
asked 2024-10-16T18:18:51.8966667+00:00
TANAPAT KLOMJIT 0 Reputation points
commented 2024-10-17T04:06:09.4066667+00:00
ChaitanyaNaykodi-MSFT 26,201 Reputation points Microsoft Employee
0 answers

How do I configure an inbound NAT rule in Azure Firewall to point at an Azure Container App?

The instructions to filter inbound traffic uses a Virtual Machine with a private IP address. If I set up a Container Apps Environment with a subnet and a Container App with VNet only ingress, the Container App replica doesn't have a private IP available.…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Container Apps
Azure Container Apps
An Azure service that provides a general-purpose, serverless container platform.
431 questions
asked 2024-10-14T15:43:46.87+00:00
Christopher Febles 0 Reputation points
commented 2024-10-16T16:29:51.59+00:00
Christopher Febles 0 Reputation points
0 answers

Azure routing to Palo Alto CNGFWs

Having issues where our Panorama instance in UK South is not able to reach our Palo Alto Cloud Next Gen Firewalls in UK West. Not sure why the devices are not able to communicate, any help?

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-10-09T08:16:33.7666667+00:00
Nana Poku 40 Reputation points
commented 2024-10-15T16:11:38.5033333+00:00
Ganesh Patapati 810 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

Azure Firewall - Denied DNAT Traffic

Hi, I have structured logs enabled on our Azure firewall which is logging everything minus the fat and full flow logs. Is there a way to see all IP addresses trying to connect to our public IPs on the firewall which are members of DNAT rules? We are…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-10-10T14:26:11.7333333+00:00
Son 80 Reputation points
accepted 2024-10-15T08:48:47.33+00:00
Son 80 Reputation points
1 answer

How to block Outbound internet access for Azure VM

Hello, I have created a VM and added UDR route table for the VM subnet to route traffic to Azure Firewall appliance and created a Network rule on Azure firewall to block Internet access. But still I can see VM has internet access.

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
asked 2024-10-09T13:24:28.87+00:00
Bolenath Gundagani 0 Reputation points
commented 2024-10-14T10:48:51.8633333+00:00
Ganesh Patapati 810 Reputation points Microsoft Vendor
0 answers

Azure Firewall change public IP

Recently Azure have made their public IP addresses zone redundant by default: https://azure.microsoft.com/en-us/blog/azure-public-ips-are-now-zone-redundant-by-default/ With basic public IP addresses being retired next year I need to remove mine from as…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-10-01T09:47:17.3333333+00:00
Eddie Vincent 0 Reputation points
commented 2024-10-09T20:05:24.47+00:00
ChaitanyaNaykodi-MSFT 26,201 Reputation points Microsoft Employee
1 answer

My network rule that specifically allows access to public SQL MAnaged Instance URL does not appear to work

I have two virtual hosts in my Azure V-NET. The subnet they are are in is connected to a route table that sends 0.0.0.0/0 to the internal IP Address of my Azure Firewall. From these virtual hosts which send traffic through the Azure Firewall I can reach…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-09-25T15:36:33.22+00:00
JohnSebastian-3934 421 Reputation points
answered 2024-10-08T14:28:07.0866667+00:00
Ganesh Patapati 810 Reputation points Microsoft Vendor
1 answer

Azure Storage Account - Public Access via Azure Front Door Endpoint - Firewall Setting

Hi, I have a storage account static website being accessed via Azure FrontDoor. It works well with "Public network access" option set to "Enabled from all networks". If I set it to "Enabled from selected VNETs and IPs" I'll…

Azure Front Door
Azure Front Door
An Azure service that provides a cloud content delivery network with threat protection.
682 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
asked 2024-08-30T14:19:48.2533333+00:00
juni dev 336 Reputation points
commented 2024-10-08T03:31:32.97+00:00
Sai Prasanna Sinde (Quadrant Resource LLC) 680 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

Azure firewall behavior if instances misbehave

Hello , I know the fact that Azure firewall starts with two virtual machines, just asking what the behavior will be if at the same the two virtual machines for some reason are not functioning properly?

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-09-12T11:14:49.2633333+00:00
Tarek Metwally 40 Reputation points
accepted 2024-10-04T16:34:56.2433333+00:00
Tarek Metwally 40 Reputation points
1 answer One of the answers was accepted by the question author.

When I send traffic to the firewall, my host cannot reach any powerapps

I have a Firewall Policy that has several Network and Application Rulesets. The host2 I'm having problems from are 10.0.3.6 , 10.0.3.8 and 10.0.5.4 on different subnets. I have IP Groups setup for the 10.0.3.* and the 10.0.5.* hosts. In my Network…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-09-19T21:28:53.8533333+00:00
JohnSebastian-3934 421 Reputation points
commented 2024-10-04T13:38:04.03+00:00
JohnSebastian-3934 421 Reputation points
1 answer One of the answers was accepted by the question author.

How to replace Route Tables by using Azure Route Server?

How do I setup Azure Route Server to replace Route Tables that route traffic to an Azure Firewall instance? We have a hybrid setup and our on-premise location is connected to our Azure environment via Express Route. We have an Azure Network Gateway (type…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
Azure Route Server
Azure Route Server
An Azure service that enables network appliances to exchange route information with Azure virtual networks dynamically.
10 questions
asked 2024-10-03T07:47:02.21+00:00
Bram vd Klinkenberg 71 Reputation points
accepted 2024-10-04T07:17:00.36+00:00
Bram vd Klinkenberg 71 Reputation points
1 answer One of the answers was accepted by the question author.

How would TLS inspection work with WAF enabled App Gateway and Azure Firewall?

Hi, I have been struggling with this from a while now. Our design has WAF enabled App gateway for incoming HTTP / HTTPS traffic from internet and then have Azure Firewall behind it. Have couple of queries for which I need assistance: 1: Does WAF has…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Web Application Firewall
asked 2024-09-18T23:33:09.83+00:00
Rakesh Singh 205 Reputation points
edited a comment 2024-10-03T19:28:10.1833333+00:00
Mail Sa 0 Reputation points
1 answer One of the answers was accepted by the question author.

Does Azure Firewall support BGP?

Does Azure Firewall support BGP? I am looking into Azure Route Server to replace the route tables which we now deploy with each (spoke) vnet. I read an article stating that Azure Firewall does not support BGP, so using ARS in combination with AFW would…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Route Server
Azure Route Server
An Azure service that enables network appliances to exchange route information with Azure virtual networks dynamically.
10 questions
asked 2024-10-02T12:36:18.5+00:00
Bram vd Klinkenberg 71 Reputation points
accepted 2024-10-02T14:04:52.98+00:00
Bram vd Klinkenberg 71 Reputation points
5 answers

When I send traffic to the firewall, my host cannot reach any powerapps

I have virtual hosts in Azure Commercial West US 2 region and Powerapps running in the Azure GCC environment. All Powerapps run just fine when I do not send any traffic (0.0.0.0/0) through the Azure Firewall. However as soon as I send traffic through…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
asked 2024-09-23T13:38:00.8933333+00:00
JohnSebastian-3934 421 Reputation points
answered 2024-09-30T20:19:21.5733333+00:00
JohnSebastian-3934 421 Reputation points
1 answer One of the answers was accepted by the question author.

Routing Issues with S2S VPN VNET Peered with ExpressRoute VNET

The Context: I have 3 VNETS (VNET1, VNET2, VNET3). VNET1 has a S2S VPN allowing on-prem devices to connect to Azure. VNET2 has an ExpressRoute allowing another subnet of on-prem devices to connect to Azure. VNET3 also has an ExpressRoute allowing another…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,930 questions
Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,543 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
379 questions
asked 2024-07-02T14:29:17.2566667+00:00
RahulRana-1085 30 Reputation points
commented 2024-09-29T13:37:23.43+00:00
KapilAnanth-MSFT 46,016 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

On-premises expressroute BGP is advertising 0.0.0.0/0 and using Azure Firewall to control traffic (including internet)

hi My environment is an on-premises expressroute BGP is advertising 0.0.0.0/0. I want to use Azure Firewall to control all traffic (including internet). See and discuss the architecture picture attached below. My guess is that we need to send the route…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
379 questions
asked 2024-09-18T03:07:24.1133333+00:00
romero 125 Reputation points
accepted 2024-09-26T21:10:28.6633333+00:00
romero 125 Reputation points
1 answer One of the answers was accepted by the question author.

Azure Hub Network with NVA and azure firewall and routing between VPN and Express route gateway through firewalls

Hi Team, I have attached the network diagram, Here is set up. There is HUB and Spoke topology with NVA. All traffic between on-premise and azure spoke is passing through NVA Third party location is connected through SDWAN VM over internet. SDWAN VM is…

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,543 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
379 questions
asked 2024-08-20T21:58:14.7633333+00:00
Siddhesh Rane 61 Reputation points
commented 2024-09-24T19:24:27.5933333+00:00
Siddhesh Rane 61 Reputation points
1 answer One of the answers was accepted by the question author.

Hub and two Spoke vnets with AFW in Hub and traffic from Expressroute

Hello, I have got problem with not going traffic via Azure Firewall from ExpressRoute to one of two spoke vnets(I don't see any traffic on Firewall logs but I can see traffic with tcpdump on VM in spoke). Traffic to on-prem via ExpressRoute works fine…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
669 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,472 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
379 questions
asked 2024-09-18T08:55:52.09+00:00
Sepski, Krzysztof Antoni 20 Reputation points
accepted 2024-09-24T05:57:34.8333333+00:00
Sepski, Krzysztof Antoni 20 Reputation points