Sefl-hosted integration runtime uses internet connection instead of a private network

Milko, Petr 1 Reputation point
2021-11-04T13:38:01.303+00:00

Dear All.

I would like to ask a question relating to connection of self-hosted integration runtime (SHIR) and an Azure storage account (ASA).

We have a private network in which a private endpoint of the Azure storage account is created. Further, self-hosted integration runtime is hosted on a server in the private network and the server is not connected to the Internet.

There is a problem that data cannot be transferred using the SHIR because of blocked communication. SHIR requires Internet to transfer data to ASA.

Is there a setup of SHIR in that private network is used instead of the Internet?

Thank you.

Petr

Azure Data Factory
Azure Data Factory
An Azure service for ingesting, preparing, and transforming data at scale.
6,341 questions
No comments
{count} votes

2 answers

Sort by: Most helpful
  1. KranthiPakala-MSFT 33,146 Reputation points Microsoft Employee
    2021-11-05T19:42:37.677+00:00

    Hi @Milko, Petr ,

    Welcome to Microsoft Q&A Forum and thanks for reaching out.

    When you use the Private link, then the communications to Azure Data Factory service go through Private Link and help provide secure private connectivity. The command communications between the self-hosted integration runtime and the Azure Data Factory service can be performed securely in a private network environment. The traffic between the self-hosted integration runtime and the Azure Data Factory service goes through Private Link.

    For a demonstration please refer to this video by a community volunteer - How to Install Self-Hosted Integration Runtime on Azure VM by using Private EndPoint - ADF Tutorial

    Ref doc - Azure Private Link for Azure Data Factory - Secure communication between customer networks and Azure Data Factory

    Hope this info helps. Do let us know if you have further query.

    ----------

    • Please don't forget to click on 130616-image.png and upvote 130671-image.png button whenever the information provided helps you. Original posters help the community find answers faster by identifying the correct answer. Here is how
    • Want a reminder to come back and check responses? Here is how to subscribe to a notification
    • If you are interested in joining the VM program and help shape the future of Q&A: Here is how you can be part of Q&A Volunteer Moderators

  2. Janne Kujanpää 106 Reputation points
    2021-11-08T16:34:52.877+00:00

    You need to setup a private endpoint for the storage account and configure your on-premises SHIR to use a private endpoint over VPN.

    refs:

    other refs: