Policy-Based VPN - Phase 2 problem

Marcio Henriques 5 Reputation points

Hey guys.

I have to connect a S2S vpn with a provider. The VPN type must be Policy-Based. My problem is that I can establish the phase 1 of the VPN, but phase 2 remains in idle status (as seen by the supplier on his side).

How can I do a troubleshoot on my side in Azure? Or any idea what my problem might be?

Thanks in advance


Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,405 questions
{count} votes

1 answer

Sort by: Most helpful
  1. ChaitanyaNaykodi-MSFT 23,501 Reputation points Microsoft Employee

    @Marcio Henriques

    Thank you for reaching out.

    I understand you are facing issue while establishing the Phase 2 connection on your policy-based VPN.

    I think the underlying problem in this case might be that.

    As documented here

    As of Oct 1, 2023, you can't create a policy-based VPN gateway. All new VPN gateways will automatically be created as route-based.

    Hope this helps! Please let me know if you have any additional questions we will gladly continue with our discussion. Thank you!

    ​​Please "Accept the answer" if the information helped you. This will help us and others in the community as well.