Help setting up static routing in VNet to CSR1000V

Nadeesh Sam 21 Reputation points
2022-07-14T03:37:17.46+00:00

Hi everyone,

I'm pretty new to Azure so I might be missing something here.

220507-screenshot-2022-07-14-125201.png

I've got a Cisco flexVPN tunnel setup between the CSR and our on-prem network. I can ping all the devices on-prem through the CSR.

I also have a Azure point to site configured and working in the same VNet. Both 172.16.5.0/24 and 172.16.6.0/24 networks are in the "Additional routes to advertise" in the configuration.

The problem is I can't ping any of the on-prem devices from the P2S vpn. Is there something that I'm missing here?

Thanks!

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,389 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,158 questions
{count} votes

Accepted answer
  1. Andreas Baumgarten 96,926 Reputation points MVP
    2022-07-14T06:21:49.823+00:00

    Hi @Nadeesh Sam ,

    please verify you have User Defined Routes (UDRs) in your VPN Gateway subnets for the on-premises networks 172.16.5.0/24 and 172.16.6.0/24 .
    Also please check if you have routes in your on-premises network for the P2S IP range.

    "Additional routes to advertise" will provide the P2S VPN clients with the additional routes only.

    The Cisco Flex VPN is connected to the Azure VPN Gateway in your diagram via S2S connection? Or is it connected to a "different VPN device in Azure"?
    The VPN Gateway with the P2S connection needs the UDRs to the on-premises networks as well.

    ----------

    (If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)

    Regards
    Andreas Baumgarten


0 additional answers

Sort by: Most helpful