Gateway Hub transit, spoke to spoke VNet gateway

Khushboo Kumari 97 Reputation points
2023-08-15T16:09:02.9966667+00:00

Hi,

I have created a VNet peering with gateway hub transit. The gateway hub vnet contains vpn, LNG and connected to the on -prem using S2S VPN connection. In spoke vnet 2,3,4,and 5 peered with the hub vnet and I have used the route table to communicate with each spoke. All the spoke vnet and gateway vnet can communicate with each other but the spoke vnet can not communicate with the on-prem VNet. so What is the reason and how can I make it pingable please suggest me as soon as possible.

User's image

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,404 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,201 questions
{count} vote

1 answer

Sort by: Most helpful
  1. Luke Murray 10,611 Reputation points MVP
    2023-08-16T00:25:31.84+00:00

    The spoke vnets will need remote Gateway Transit enabled

    To use virtual network peerings in the virtual network Peering setup:

    • Configure the peering connection in the hub to Allow gateway transit.
    • Configure the peering connection in each spoke to Use the remote virtual network's gateway.
    • Configure all peering connections to Allow forwarded traffic.

    Reference: Hub-spoke network topology in Azure

    Make sure ICMP is enabled on the client firewalls, and allowed via the NSGs as well.