601 questions with Azure Firewall tags

Sort by: Updated
0 answers

Azure Firewall and outbound pings lost

outbound pings are allowed via policy, can see them leaving via the logs, no returned traffic comes back to complete the ICMP and the client behind the azure firewall shows timed out. what gives? do you have to specifically allow ICMP replies?

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-07-09T15:56:54.6466667+00:00
John Wirtz 0 Reputation points
commented 2024-07-10T09:50:38.5133333+00:00
KapilAnanth-MSFT 39,556 Reputation points Microsoft Employee
0 answers

Site-2-Site VPN with whitelisted IPs

Dear azure team, I setup S2S VPN from azure to an on-prem infrastructure. The status on azure portal says connected. The tunnels are up on both sides but I am unable to pass traffic through it. Pinging the private IP of the onprem systems is failing.…

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,437 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-07-02T13:00:08.3533333+00:00
Seun Ore 40 Reputation points
commented 2024-07-10T05:48:56.1366667+00:00
KapilAnanth-MSFT 39,556 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Two NVAs (firewalls) inline in Azure

Hi, My client wants to put two firewalls inline as per security policy - Palo Alto and Checkpoint. I want to know: If this is possible in Azure to use two NVAs inline? Although above option is preferred, if we use Azure Firewall + one NVA, is this…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
asked 2024-07-05T14:55:21.1733333+00:00
Rajiv Bansal 186 Reputation points
accepted 2024-07-10T04:47:55.98+00:00
Rajiv Bansal 186 Reputation points
0 answers

Azure Database Access from A Different Virtual Network

Dear Azure Team, I have an azure managed mysql database in virtual network vnet1 and a virtual machine in vnet2. I am unable to get this VM to access the database. I have a hub-spoke architecture with both vnet1 and vnet2 peered with my hub-vnet with…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
Azure Database for MySQL
Azure Database for MySQL
An Azure managed MySQL database service for app development and deployment.
758 questions
asked 2024-07-01T07:47:35.6233333+00:00
Seun Ore 40 Reputation points
commented 2024-07-09T21:19:57.5+00:00
Seun Ore 40 Reputation points
0 answers

Routing Issues with S2S VPN VNET Peered with ExpressRoute VNET

The Context: I have 3 VNETS (VNET1, VNET2, VNET3). VNET1 has a S2S VPN allowing on-prem devices to connect to Azure. VNET2 has an ExpressRoute allowing another subnet of on-prem devices to connect to Azure. VNET3 also has an ExpressRoute allowing another…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,500 questions
Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,437 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
342 questions
asked 2024-07-02T14:29:17.2566667+00:00
RahulRana-1085 10 Reputation points
commented 2024-07-09T19:11:58.2233333+00:00
RahulRana-1085 10 Reputation points
3 answers One of the answers was accepted by the question author.

Azure Firewall DNS

Hi, in our existing Azure Firewall configuration, under DNS, we have the DNS servers enabled with the default Azure provided DNS and the DNS proxy disabled. For all our other resources in Azure, we have 2 Azure domain controllers and these are also the…

Azure DNS
Azure DNS
An Azure service that enables hosting Domain Name System (DNS) domains in Azure.
630 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
Azure Firewall Manager
Azure Firewall Manager
An Azure service that provides central network security policy and route management for globally distributed, software-defined perimeters.
88 questions
asked 2024-07-04T10:32:11.74+00:00
Ghulam Abbas 191 Reputation points
answered 2024-07-05T10:44:42.65+00:00
Ghulam Abbas 191 Reputation points
1 answer

Azure private zone with on prem ADDNS

I had a requirement to use the Azure firewall proxy to capture and log DNS traffic comping Azure private link services. My plan was to setup conditional forwarder for all private DNS resources from on prem to Azure firewall using firewall proxy to DNS…

Azure DNS
Azure DNS
An Azure service that enables hosting Domain Name System (DNS) domains in Azure.
630 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,167 questions
asked 2024-07-02T05:59:18.92+00:00
prasantc 876 Reputation points
commented 2024-07-04T14:15:04.36+00:00
KapilAnanth-MSFT 39,556 Reputation points Microsoft Employee
2 answers

Express Route and Azure Firewall

We have express route to on-prem and it is working fine. We are in the process of implementing Az Firewall but are having trouble getting the routing right. I know you cannot add routes to the Express Route subnet so how do we force traffic that…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
342 questions
asked 2022-05-23T14:06:36.88+00:00
MDavis 26 Reputation points
commented 2024-07-03T13:31:02.44+00:00
GitaraniSharma-MSFT 49,346 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Inbound Service tags in Firewall rules not avalable in portal

we have a service bus configured in vnet using private endpoint. We are creating D365 plugins which will publish to a topic in the service bus. Since D365 is in MSIT. We require to allow the inbound for that traffic. So, planning to enable…

Azure Service Bus
Azure Service Bus
An Azure service that provides cloud messaging as a service and hybrid integration.
579 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
asked 2022-07-21T12:48:31.733+00:00
Kunal Tanti 26 Reputation points Microsoft Employee
commented 2024-07-03T11:36:30.7233333+00:00
NNIT-PHFA 0 Reputation points
0 answers

Express Route Routing Issues (Azure to On-premises route)

Hi @GitaraniSharma-MSFT - We have performed the same setup from this article https://learn.microsoft.com/en-us/answers/questions/860533/express-route-and-azure-firewall) We have 2 express route premium circuits (East US & South-Central US) with 3…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
342 questions
asked 2024-06-30T00:32:00.81+00:00
Jaykishan Bairagi 0 Reputation points
commented 2024-07-03T06:03:35.1433333+00:00
KapilAnanth-MSFT 39,556 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Azure Firewall

Hello, Currently i have 3 server with Public IP enabled, and each server have specific rule to allow some ports accessing from internet. What i do is block incoming connection on the NSG. If i have azure firewall, can i block incoming connection from the…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-06-24T07:34:11.0466667+00:00
Handian Sudianto 4,431 Reputation points
commented 2024-07-03T03:04:27.6+00:00
KapilAnanth-MSFT 39,556 Reputation points Microsoft Employee
1 answer

Network Security Groups attached to a NIC

Hi: We are investigating which are the current Effective Security Rules that are applied to a Network Interface(NIC). We are aware that we can achieve this using a REST API call: Network Interfaces - List Effective Network Security Groups - REST API …

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2021-05-27T15:47:32.29+00:00
Ezequiel De Luca 1 Reputation point
commented 2024-07-02T14:14:35.4666667+00:00
ZAN2024 0 Reputation points Microsoft Intern
1 answer One of the answers was accepted by the question author.

Hub and Spoke architecture traffic flow issue?

We have a hub and spoke architecture environment. We need communication from vm1 from spoke 1 to communicate to vm2 in spoke 2 using hub and azure firewall in hub vnet. We need to establish this connection without using Virtual Network Gateway. We…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
asked 2024-06-24T16:08:05.18+00:00
Sourabh Chhabra 40 Reputation points
commented 2024-06-27T04:36:04.2+00:00
Sourabh Chhabra 40 Reputation points
3 answers One of the answers was accepted by the question author.

Delay after whitelisting an IP address

Hi, I have a github action that builds and deploys a static website into a Azure Storage account. By default the storage account's firewall rules deny incoming connections so I need to whitelist the github runner's current IP for the duration of the…

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,884 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2022-03-14T14:12:16.837+00:00
tamas-kr 56 Reputation points
edited an answer 2024-06-27T03:26:23.1833333+00:00
Roopa Jain 0 Reputation points
1 answer One of the answers was accepted by the question author.

Azure VM Access to the Internet via Azure Firewall

Dear Azure Team I am very careful to mess around with our firewalls. We have a number of private VMs in a subnet. The subnet is protected by firewall and there is no direct access to the internet. There is one server in this subnet that needs to connect…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,500 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-06-26T22:02:27.2966667+00:00
Seun Ore 40 Reputation points
accepted 2024-06-26T23:43:07.37+00:00
Seun Ore 40 Reputation points
0 answers

Azure firewall backup with logic app

The backup works and it generate json files with few lines as backup file https://techcommunity.microsoft.com/t5/azure-network-security-blog/backup-azure-firewall-and-azure-firewall-policy-with-logic-apps/bc-p/4165254#M383 I see the restore process with…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-06-18T06:18:02.09+00:00
prasantc 876 Reputation points
edited the question 2024-06-21T04:07:49.29+00:00
SadiqhAhmed-MSFT 40,831 Reputation points Microsoft Employee
2 answers

Azure Firewall Session table

Hi Team, If we manage azure firewall policies through azure firewall manager then Is it possible to see traffic/connections/ session table of Azure firewall from firewall manager or from firewall itself ( Like how we can see traffic in Palo Alto or…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Firewall Manager
Azure Firewall Manager
An Azure service that provides central network security policy and route management for globally distributed, software-defined perimeters.
88 questions
asked 2024-06-13T12:28:20.3366667+00:00
Siddhesh Rane 1 Reputation point
commented 2024-06-18T08:59:56.0066667+00:00
Gowtham CP 3,730 Reputation points
0 answers

Azure Firewall Policy - Policy Analytics Stopped Working Suddenly

As title says, Policy Analytics suddenly stopped working/indexing the logs, so it no longer show traffic, hits etc. Only can see analytics from about 1 week ago and older now. No known changes done in the environment either, I tried to disable the Policy…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-06-12T08:51:29.74+00:00
Martin Cato Dahl 0 Reputation points
commented 2024-06-18T01:59:12.41+00:00
GitaraniSharma-MSFT 49,346 Reputation points Microsoft Employee
0 answers

Internet intent on Azure firewall

Enabling Internet intent on the security configuration of the vhub immediately blocked RDP access to the on premise resources using public IP address. It will probably block web using natted public IP on prem too. Is there any remediation to it?

Azure Virtual WAN
Azure Virtual WAN
An Azure virtual networking service that provides optimized and automated branch-to-branch connectivity.
198 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
asked 2024-06-06T16:36:08.5866667+00:00
prasantc 876 Reputation points
commented 2024-06-13T15:14:05.13+00:00
GitaraniSharma-MSFT 49,346 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Azure Firewall Outbound DNAT rules

Hi, We are migrating DMZ services to our Azure environment with our Azure premium firewall. I have tested inbound DNAT from an external source without issue. Where we NAT one of the public IP addresses on the Azure firewall to an internal…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
601 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,271 questions
asked 2024-06-10T14:23:49.4133333+00:00
Son 60 Reputation points
accepted 2024-06-12T14:02:27.01+00:00
Son 60 Reputation points