Site to Site HUB Routing issue for in Azure VWAN
Greetings, I am building a proof of concept architecture using Azure VWAN and having issues routing internal private traffic between branches. For sake of simplicity I will include only the parts of the infrastructure that are relevant to the…
![](https://techprofile.blob.core.windows.net/images/6tp0hEG4PEGLctQDiVTdrw.png?8D8FA3)
![](https://techprofile.blob.core.windows.net/images/Nd_pi7-IHkuDC3BVgl0RFQ.png?8D81F2)
Azure Virtual WAM - Routing Intent configured
Hi, I have a simple question. in Azure Virtual Hub in Virtual WAN, if we configure Routing Intent and protect all connections with Azure firewall (Internal and Internet). If i add a static route in Connection, to send internet traffic to a NVA place in…
Using BGP peering with Azure route server for hub and spoke model vs Azure VWAN
Our scenario - We have two separate environments setup on Azure as below: 1. Hub and spoke model with third party NVA connected to on-prem with ExpressRoute connection 2. Azure Virtual WAN integrated with Azure firewall, connected to on-premise…
Can NVA be placed behind Azure load balancer and Load balancer Frontend IP can be used to exchange bgp routes?
We are planning to implement Fortigate SDWAN devices in a spoke Vnet. They are in HA mode with Azure load balancer. We want to exchange the routes from SDWAN and Azure Virtual Hub. Can there be BGP setup between azure virtual hub to Azure load balancer…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Cisco SD-WAN 800v BGP peering with VWAN hub
Hi, I have 2 regions of Azure connected to each other via Azure VWAN hub. Also we have Azure express route from each Azure region landing into the on-prem DC. We intend to manually deploy 2 x Cisco SD-WAN 8000v routers in each region and setup BGP…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Express Route and VPN together
Our scenario: We are planning to use Express Route, VWAN integrated with Azure Firewall in East US (primary site) and West US (secondary/DR site) and we will be connecting the on-premise data center with Express Route. Questions: If we are using the…
![](https://techprofile.blob.core.windows.net/images/Nd_pi7-IHkuDC3BVgl0RFQ.png?8D81F2)
Unable to delete virtual wan resources
Hello, I am having trouble deleting a virtual wan resource group I don't have an error message when i delete the resoure group. no error when i delete any of the vwan resources. I tried the azure portal, Powershell, CLI and the REST API, but nothing…
Filter traffic from a site-to-site vpn with virtual hub, vwan and Azure firewall.
I have implemented a virtual hub, vwan and azure firewall, I need the traffic coming through a vpn site to site to be filtered by azure firewall. I am not sure how to configure it, but I have checked in microsoft documentation and I see that I could…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Azure Vwan routes level (vnet, subnet)
Hello, We wants to isolate subnets within spoke vnets. The aim is to force traffic to an NVA (not managed by vWan) We thought it would be possible by overriding default route to vnet in vWAN route table. For instance, if my spoke is 10.21.4.0/24, I add a…
Route Internet traffic to an NVA via Virtual-HUB
Hi guys I am trying to push internet traffic into an NVA attached to a vnet peered with a Virtual-Wan-HUB. The peer connection works just fine and I already have a static route configured for VPN clients (although this subnet is actually part of the…
Route advertisement in vwan
Hi, We have a transit Vnet with Palo Alto firewall and f5 LTM hosting internet and intr?
What is the Cisco 8000v instance size, as part of the "create a Network Virtual Appliance" process
I am onboarding the Cisco SD-WAN 8000v routers in Azure portal as part of create a Network Virtual Appliance (NVA) and it takes me to the Azure market place page "Cisco SD-WAN for Azure Virtual WAN". However it doesnot allow me to choose the…
![](https://techprofile.blob.core.windows.net/images/Nd_pi7-IHkuDC3BVgl0RFQ.png?8D81F2)
NVA & vHub routing issue
I have below network : 2 vNet in eastus connect to vHub1 ( vNet1 & vNet2 ) 1 vNet in CentralUS connect to vHub2 ( vNet3 ) vHub1 & vHub2 are belongs to my vWan1 ( vHub1 in eastus , vHub2 in centralUS ) 1 VM in each vNet, they can connect to…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Different egress points for prod and non-prod using virtual wan
Hi, I'm looking to use Virtual WAN for centralized internet egress and vnet-to-vnet connectivity. However, I need to be able to differentiate between non-prod and prod egress traffic while allowing access from a common management network to both non-prod…
vWAN Hub not allowing transit traffic from 3rd party NVA
Routing issue with NVA VM.png Hi Folks, I am new to MS Azure and I am struggling with this routing issue since a day now, trying to simulate an upcoming deployment scenario in my free-tier account, please refer to the diagram attached to get more…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
ExpressRoute and FortiGate BGP Issue in a Azure Virtual WAN
Good evening. We have deployed an Azure virtual WAN with a secured hub. The Azure virtual WAN has a VPN and ExpressRoute gateway deployed. The Azure virtual WAN routing preference is configured as ASPATH. All internet and private traffic is routed…
![](https://techprofile.blob.core.windows.net/images/_ToNK5q4L06apppQAqHp8Q.png?8D9F7B)
Where can I find Azure (private) DNS / Network limitations and what are their consequences
Hi, some of the azure products form an important part of our infrastructure. There are a few, but most importantly a private DNS zone, a virtual WAN, a virtual network, a MSSQL database, a private DNS resolver, and a couple of VMs for DNS forwarding via…
Virtual Wan Site to Site VPN Tunnel stops working after a couple days
Hello, i have a VPN site-to-site tunel between virtual wan and a fortigate appliance. Both sides show the tunel as UP and Connected, traffic flows in both directions and after a couple days it stops. Local Network: 172.24.8.0/21 Remote Network:…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Vnet peering
Is it possible to peer two vnet in the same region directly along with the vWan peering it already has. I need to make services between the vnet work while resolving vnwan route issues. Adding direct peering while it has a vWan peering should not cause…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)
Azure Wan VPN Azure Firewall Routing Issue
I have a secured WAN with firewall and routing intent configured (internet and private ) traffic going through firewall. After creating a VPN site and connection to the HUB, i can confirm that the tunnel is UP and i see the on-premise's subnets…
![](https://techprofile.blob.core.windows.net/images/lvNaBJBqh0eurOu4q2bQSQ.png?8DA4E8)