Hi @Mike
We understand that you're looking to set up a Site-to-Site VPN for your organization to connect two different locations securely. Here’s a rundown of what you’ll need to consider for this setup:
To establish a Site-to-Site VPN, you will need:
- An active Azure subscription (separate from your Microsoft 365 license).
- A Virtual Network (VNet) in Azure to connect to your on-premises network.
- A VPN Gateway (deployed in Azure, supporting IPsec/IKE protocols).
A compatible on-premises VPN device with:
- A public-facing IPv4 address
- Support for IKEv2/IPsec
- Proper configuration to connect to Azure VPN Gateway
- Microsoft 365 License Consideration
Your existing Microsoft 365 license does not include Azure VPN Gateway services. You will need a separate Azure subscription (Pay-As-You-Go or Enterprise Agreement).
VPN Gateway costs will depend on the selected SKU (Basic, VpnGw1, VpnGw2, etc.) and data transfer.
Also, please refer to the below documents for further understanding:
Your feedback is important so please take a moment to click Accept answer.
If you still have questions, please let us know what is needed in the comments so the question can be answered.