On premise network routing to internet via azure s2s
I have a test device that works on us internet only. we are the organization working for US clients. So to make the device work for test purpose we need to route all traffic from device via azure to internet. How can we do that please help me to find me…
Attaching Azure Firewall Policy with Hub using Terraform
Attaching Azure Firewall Policy with Hub using Terraform We are using hub and spoke architecture for creating landing zone on azure. We are using Terraform for infra provisioning. We have created VWAN, Hub, Firewall & Firewall policy using…
Application gateway + Azure Firewall (directly going via internet)
I was trying to zero trust setup and achieve the route from application gateway -> central Azure firewall -> (webapp)App Service. But i cannot see the traffic from applicationgw going via AzFw The current route which has been setup on application…
How do you integrate a branch network whose address space overlaps spokes
I have a VWAN/Secure Hub topology in Azure with the hub and all of its internal spokes living in the 172.16.0.0/16 -> 172.24.0.0/16 spaces. Internally, this all works just fine. Now I need to be able to integrate external data centers by…
Azure Firewall Policy during region failure
I have the below architecture in Azure - Two Virtual Network -- vnet1 (region: East US), vnet2 (region: West US) Two Firewall -- fw1(on vnet1, East US) , fw2(on vnet2, West US) One Firewall Policy in East US -- fwpolicy(attached to both…
Filter P2S traffic through Azure Firewall to spokes
Hello ! I'm trying to force all the P2S traffic through azureFirewall to be able to reach spokes vnets. I have the following topology : 1 hub vnet (10.1.0.0/16)with 2 subnets (GatewaySubnet (10.1.1.0/27)/ AzureFirewallSubnet(10.1.2.0/24)) with…
Azure - Hub And Spoke P2S-IPSEC different customers
Dear community ! I'm thinking about a network architecture for the diagram below ![195440-usecase.png][1] The situation is the following : - The aim is to force traffic to go through AzureFirewall when customers wants to reach their workloads (Each…
Route traffic through multiple Azure FWs in different Vnet
Hello, i have a question about routing traffic through two Azure firewall in different Virtual network(Vnets) in different regrions. Also, both Firewalls and Vnets are in different regions. If there is a hub-Vnet with Az FW and a spoke-Vnet with Az FW.…
The virtual network must have a subnet named Azure virtual firewall subnet
Hi Team, Although I created a seperate subnet of Azure firewall under Vnet belongs to my VM . But while creating the Azure Firewall it showing the below errors as attached . Please guide me to know more on this . ![ ]2
How to configure ASA VPN (P2S) and Azure Firewall to permit internet access without split-tunneling.
Trying to configure access for VPN users connecting into the Azure environment, while allowing them to connect to Internal sites without deploying split-tunneling on the Cisco ASA VPN device. Looking for advice, web docs, whatever would give me a…
Can you create your own custom IDPS Signatures/Rules
Is there a way to create custom IDPS signatures like with mainstream NGFW providers (Palo Alto, Fortinet, Checkpoint, Snort etc.) for the Azure Firewall Premium? Thanks
Pass Client IP to the webserver behind Azure Firewall
Is it possible to Pass Client IP to the webserver behind Azure Firewall, need to obtain the original client IP's which connect to my webserver behind the azure firwall
Azure Firewall
Need to get the source IP of the client who is connecting from outside to my webserver behind a Azure Firewall NAT rule
Point-to-Site VPN protected by Azure firewall from the outside
Hello, I am wondering how I could configure the hub to route traffic as follows: p2s tunnels over the internet -> azure FW - > vpnGateway - > AzureFW -> vnet subnets (and back to p2s clients the same way) tia
Azure Firewall Log Query - Src and Dst IP Only
Hi folks - newbie here so excuse me - don't worry i'll stop asking basic qtns here very soon [hopefully] Can I please ask someone to share script to run query for defined source / destination IP only only. So in other words, show me all flow with the…
Avoiding Preflight calls
I have frontend react app deployed in Az CDN and backend in Az App service. How can I avoid CORS issue i.e. avoiding preflight calls? Please suggest a solution.
How to set up a multi-spoke virtual network in Azure Firewall
Can you tell us how to configure multiple-spoke virtual networks in Azure Firewall when you adopt a hub-spoke network topology in Azure?
Cannot Delete Azure Firewall
Hi Folks, I am not able to delete azure firewall, error: Failed to delete the Azure Firewall 'AZFW01'. Error: Azure Firewall AZFW01 failed to dereference Firewall Policy…
Hub & Spoke with Azure Firewall - Integrating External Businesses
Hi, I need to find a solution to integrate external businesses into our Azure Hub & Spoke environment with an Azure Firewall. By external businesses I am meaning businesses that we own as a group but are not connected to our normal MPLS network. I…
Assigning external IP to subnets
I am looking into the functionality of Azure in comparison to our existing on prem firewall. Currently we have a batch of external IPs broken up and assigned to one of the vnets on our firewall. i.e. Subnet 1 uses External IP 1 to go out to the…