Hi Tom McCartan,
Good day!
Apologies for the delay and inconvenience.
I have created the scenario on my side. I used the Azure DNS Private Resolver.
- Create the Private DNS Resolver and add existing vnet where all resources have.
Note: Create a new subnet in the vnet
2.Create the Inbound Endpoint after that create.
3.Add this Ip in the DNS server in the vnet and restart the vm, disconnected the vpn.
4.Try to connect the storage account in the Azure Storage explorer.
I hope it's helps you.
If you have any further concerns, please do not hesitate to contact us.
We are pleased to help you.
If the information is helpful, please click on "Upvote" and "Accept Answer" so that it would be helpful to other community members.