Remote Site --> HQ --> VPN/Azure Question

John Smith 1 Reputation point
2021-04-14T17:18:17.587+00:00

I have an IPSEC VPN built on a Fortinet 200E that is working between our HQ and Azure. I have several VM's in Azure and traffic flows successfully. I now want to route traffic from some remote locations to Azure via the VPN. These locations are currently connected to HQ via the Fortinet.
Basic topology:
HQ - Lan1
Remote Locations - Wan1
Internet - Wan2
I have policies for HQ to Azure (Lan1 --> Azure VPN interface) and the remote locations (Wan1 --> Azure VPN interface). When pinging from a remote location I see the traffic handed off to the Azure VPN but nothing comes back. I see no traffic when pinging from Azure to the remote location.
I believe that this indicates a problem on the Azure side but I have been unsuccessful in capturing packets to verify this. I have tried capturing packets at the Gateway and the Gateway connection and both fail saying there was no data. So far the Azure networking side is a black hole.
Dows anyone have any experience in this scenario?
Thanks

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,379 questions
{count} votes