Public Container App cannot communicate with On-premise resources via VPN

CreatiXx 25 Reputation points
2025-10-07T15:41:33.01+00:00

Hi all,

I'm running into an issue and i cant seem to find the right documentation. I'm trying to setup a Container App that needs to be publicly available but also needs to be able to get feedback from on-premise resources through a VPN.

I've done the following :

  1. Made 2 resource groups
    1. 1 for networking
    2. 1 for everything regarding the application/container app
  2. In my RG for networking i made :
    1. Virtual Network
    2. Address space
    3. Multiple subnets
  3. Public IP address
  4. VPN Gateway (which works)
  5. Local network gateway
  6. Connection
  7. Routing Table (connected to subnet allocated for container app)
    1. Made a route that sends on-prem traffic to the VPN gateway
  8. Network security group (connect to subnet allocated for container app)
    1. inbound & outbound rules that allow trafic to and from the on-premise subnets
  9. For my container RG i did the following :
    1. Made a container app environment thats connected to my vnet and dedicated subnet
    2. Made a container app with an image from github (works)

This is where i am stuck, i think i did everything correct and the VPN seems to work (says connected on both sides) but i dont see any traffic. The app is approachable but now i need it to be able to communicate with on-premise resources as well.

Does anyone know what i can/need to do now?

Thanks in advance!

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
{count} votes

Answer accepted by question author
  1. Praveen Bandaru 9,245 Reputation points Microsoft External Staff Moderator
    2025-10-13T14:51:20.9733333+00:00

    Hello CreatiXx Thank you for your response.

    • Please check your VPN gateway configuration to ensure that all your on-premises IP address pools are properly whitelisted in the LNG.
    • Also, verify that all parameters are correctly configured on both sides, as missing configurations may cause issues. In the meantime, please try to check from the VM inside the azure connectivity working or not if inside the azure working at that time you can check from on-prem setup.
    • Run connectivity tests from your Container App to verify it can access the on-premises resources, using tools such as curl or ping.
    • Also, review the NSG rules to make sure they match your requirements. Confirm that both inbound and outbound traffic is permitted for the relevant IP ranges and that no deny rules are causing issues.

    Hope the above answer helps! Please let us know do you have any further queries.

    Please do not forget to “up-vote” wherever the information provided helps you, this can be beneficial to other community members.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.