Unable to deploy secrets into the keyvault with private endpoint enabled
There are two Azure virtual networks (vnets), each with two subnets: one for private endpoints and the other for integrating a function app. Two separate Key Vaults with private endpoints exist, each located in a different vnet. Vnet peering has been…
Azure App Service with Private endpoints does not support deployment slots
Hi, I am currently in the process of deploying infrastructure using ARM (and bicep), the requirements for this infrastructure will see the deployment of a virtual network into which I need to host both Azure SQL Database and Azure App Service, both…
Azure Arc Private link scope region
Hi, I am creating a following architecture: I am new to this so please forgive me. But what this picture says is that i have two ExpressRoute connection from my on-premise AD to the gateway in West Europe Region and North Europe Region. I am trying…
Does private endpoint restrict public access
Hi, I saw multiple articles with vague explanations like "traffic can reach the service resource from on premises without using public endpoints" etc. My question is: if I configure private endpoint to any type of resource, does it mean…
docker login to azure ACR through private endpoint gets 403 forbidden
Hi all, I have created an Azure ACR in a RG. ACR has Public Access enabled for all networks. For private access I have configured an endpoint getting an ip from a private subnet. When performing docker login xxxxxx.azurecr.io with admin account…
Azure Monitor Private Link Scope (AMPLS) in a Peered Vnet not working
I have a set-up where I have 2 virtual networks that are peered. I have a requirement to disable public access for Azure Monitor services. So I looked at enabling AMPLS, and followed the steps mentioned in here:…
Invalid subscription error when deploying MySQL Flexible instance
I am trying to deploy a MySQL instance into a VNET with private DNS in a different subscription. It is failing with the error: "The subscription '
If we enable the private endpoints for storage account, can't we able to access storage account by using VNETs
I have a storage account (stgA) with its networking set to "Enabled from selected virtual networks and IP addresses." I've successfully added VNETA to access stgA, and I can access the storage from the VNET. However, after creating a private…
'CloudInternalError' while creating Enhanced policy Backup for Windows VM on a private Recovery services vault, the VM connectivity to vault private endpoints are working but backup cannot be enabled. How to fix it ?
Need help to solve this issue. Scenario Deployed a SQL Server 2022 on windows server 2022 virtual machine. Have create Recovery services vault on the same resource group and enabled private access. Trying to Backup with Standard Policy is working The…
I cannot select a private endpoint on Azure Cache for Redis
I want to deploy Azure Cache for Redis, but all the options in [Network] [Network Connection] [Connection Method] are grayed out and I cannot select a private endpoint. I would like to select a private endpoint. 【Parameter】 Region: Japan East Cache type:…
Extension based agent deployment failed on On-premises Systems - Azure Arc
Hi I'm trying to deploy (push from Azure Portal) Extension-based Hybrid Runbook Worker nodes that are on-premises (not in Azure VNet). The On-prem and Azure environments are connected via ExpressRoute and the below configuration has been put in-place: …
Moving a private endpoint connection from one subnet to different ip address space/subnet in the same VNET
I’ve a situation where azure databricks running out of IPs in a VNET/Subnet, in order to modify existing databricks CIDR from /24 to /22 I need to remove other Subnets belongs to Private Endpoints. My plan is to add additional address space to existing…
VNET link to multiple private DNS zones
we have a group of subscriptions, each of them has their own private DNS zone deployed with different private endpoints. One thing to highlight here is that all of these zones would have exact same name. e.g. privatelink.database.windows.net we also…
Connection between edge device on Linux VM and IoTHub Private Link endpoint
I've followed: https://github.com/MicrosoftDocs/azure-docs/blob/main/articles/vpn-gateway/vpn-gateway-howto-point-to-site-resource-manager-portal.md Edge runtime deployed on VirtualBox Linux VM. When my IP is in the public network access IP filter…
Acces SSH to the container in azure web app using privatelink
Hello, We have azure web app with container registry and we configured ssh acces inside the docker container, this web app est the backend of our application gateway. When disabling public access for web app, the access ssh to container is down. We have…
Unable to resolve Azure private DNS in Custom DNS enabled Vnet
I have configured Windows AD DS servers in a virtual network and set as custom dns servers for the spoke vnet. Also configured private end points for Azure fileshares in the same vnet. Network architecture is a Hub and spoke model. All the virtual…
Private endpoint and NSG rules impacted by routing
What I see is that NSG flow logs do not exist for traffic originating from the virtual network gateway (on premise traffic), that has a destination of a private endpoint (on a peered VNet). I have a hub spoke network with a virtual network gateway…
Deploy Azure function app with private endpoint results gateway error
I am trying to do ZIP deployment of azure function app that has private endpoint enabled. As a part of this, I created azure resources as follow: Function app with private endpoint enabled and disabled Allow public access on. Storage account with…
How to Register an on-prem Self-Hosted Integration Runtime for Azure Data Factory that uses a Private Endpoint
I have configured an Azure Data Factory using a private endpoint w/ private DNS for access. I am wanting to be able to connect to local resources within Data Factory. I have created a self-hosted integration runtime within DF Studio and downloaded the…
Unable to deploy privatelink endpoint into AzureFirewallSubnet
Hi, this question is related to my previous question: https://learn.microsoft.com/en-us/answers/questions/1403114/how-to-nat-traffic-into-private-link-endpoint?comment=question#comment-1408409 I'm attempting to use Azure firewall to SNAT traffic from…