Azure VPN S2S connection with policy based

Raicevic, Srdjan 21 Reputation points
2022-09-19T12:30:12.843+00:00

Dear all,

I am a little confused. We have 10 S2S VPNs with our on-premise sites with BGP configured and everything works like a charm. Sites can communicate with one another and Azure is only the transit. Now, we have one site, and unfortunately on that firewall, only policy-based VPN can be configured. Ok, I saw that there is an option for ike policy set on custom and enable the policy-based selector and put local and remote address range.

My question is, will other sites with this kind of configuration will be able to access resources on this new site with policy-based (without BGP)?
I can propagate this new address scope on BGP through Azure, so other sites will have BGP route for this new site point to Azure.

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,506 questions
0 comments No comments
{count} votes

Accepted answer
  1. KapilAnanth-MSFT 43,896 Reputation points Microsoft Employee
    2022-09-19T13:34:43.357+00:00

    Hi @Raicevic, Srdjan ,

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.
    I understand that you would like to understand more about how Policy-based selector works in Azure VPN Gateways.

    For Azure to act as Transit, BGP is a must.

    So I am afraid, with Policy-based traffic selectors , I do not think this would be feasible.

    I hope this helps. Let me know should you have any follow up questions on this.

    Cheers,
    Kapil

    ------------------------------------------------------------------------------

    Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.