Azure Wan VPN Azure Firewall Routing Issue

Diego Fernandes Spinola Castro 0 Reputation points
2023-08-31T01:37:20.3433333+00:00

I have a secured WAN with firewall and routing intent configured (internet and private ) traffic going through firewall.

After creating a VPN site and connection to the HUB, i can confirm that the tunnel is UP and i see the on-premise's subnets propagated to the firewall's route table.

Firewall logs show the traffic from Vnet to On-premise being allowed but ping and traceroute fails.

Packet capture from VPN Gateway doesn´t show VNET -> OnPremise traffic, only packets coming from OnPremise -> VNET.

Azure Virtual WAN
Azure Virtual WAN
An Azure virtual networking service that provides optimized and automated branch-to-branch connectivity.
189 questions
Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
574 questions
{count} votes

1 answer

Sort by: Most helpful
  1. KapilAnanth-MSFT 35,416 Reputation points Microsoft Employee
    2023-09-05T06:13:56.8366667+00:00

    @Diego Fernandes Spinola Castro

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    I understand that you are configuring a new S2S Connection between Azure vHUB and an Onprem site.

    I see that you are using a secured hub with Routing intent configured for private ranges.

    You informed that us that the Remote Network CIDR was misconfigured and fixing this resolved the issue.

    Thanks for your continued contribution on Q&A and appreciate much for taking the time to share your resolution.

    Thanks,

    Kapil


    Please Accept an answer if correct.

    Original posters help the community find answers faster by identifying the correct answer.

    0 comments No comments