Virtual Firewall - Azure

HB 0 Reputation points
2024-12-27T17:32:09.6666667+00:00

Hello

We have a custom virtual firewall inside of our Azure environment. We created a BGP/IPSEC tunnel to a vendor. The BGP connects fine, no issues between our virtual firewall to the vendors cisco firewall in their environment. Tunnel stays up. The issue is when we ping there is no traffic going to them, even though all rules are setup between the two. The vendor does not see the traffic coming in through their BGP interface and we see the traffic leaving our network. Upon reading various articles, it seems could Azure be blocking GRE? Can someone please explain to me why? then how to resolve?

Thank you

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,762 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Andreas Baumgarten 123.4K Reputation points MVP Volunteer Moderator
    2024-12-27T18:43:47.47+00:00

    Hi @HB ,

    In Azure networks Generic Routing Encapsulation (GRE) packets are blocked. As far as I know there is no official explanation from Microsoft about the "why GRE is blocked".

    Source: What protocols can I use in virtual networks?


    (If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)

    Regards

    Andreas Baumgarten

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.