How to connect on-prem with Express route to Azure Labs internal network?

גלעד דואני 5 Reputation points
2023-02-19T18:04:34.0433333+00:00

we have an on-prem environment that is connected to our azure via Exress route/
we want to create a connection so that we can connect via ssh/rdp directly from our on prem computers to the azure labs machine/ saly the azure labs machines have a separated network so we cant reach thme without using a jump server

Azure Lab Services
Azure Lab Services
An Azure service that is used to set up labs for classrooms, trials, development and testing, and other scenarios.
280 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
323 questions
{count} votes

1 answer

Sort by: Most helpful
  1. GitaraniSharma-MSFT 47,676 Reputation points Microsoft Employee
    2023-02-22T15:59:37.0766667+00:00

    Hello @גלעד דואני ,

    Welcome to Microsoft Q&A Platform. Thank you for reaching out & hope you are doing well.

    I understand that you would like to connect your Azure Labs internal network to your on-premises via ExpressRoute.

    I believe you are using Azure lab services. Is that correct?

    As per the below doc, for on-premises connectivity using a Virtual Network Gateway, the gateway, specified virtual network, network security group, and the lab plan all must be in the same region.

    Refer: https://learn.microsoft.com/en-us/azure/lab-services/how-to-connect-vnet-injection

    Below is an Azure lab services blog explaining how to your Azure lab to your on-premises using VPN gateway:

    https://techcommunity.microsoft.com/t5/azure-lab-services-blog/connecting-to-on-premise-networks/ba-p/1381569

    If you see this blog, you can find the below points:

    1. The lab account resource and the Azure virtual network to be peered must be in the same region.
    2. The virtual network should be in the same subscription.  If this is not possible, as might be the case when using Express Route, the lab account will need to be peered to a Vnet in the same subscription and then a Vnet-to-Vnet connection made with BGP enabled between the peered Vnet and the ExpressRoute hub Vnet.

    So, you need to make sure the above pre-requisites are met in order to connect your on-premises to Azure Labs internal network via ExpressRoute.

    Kindly let us know if the above helps or you need further assistance on this issue.


    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments