Azure P2S VPN Client disconnects frequently
Hi, we have the following problem, We are using Always on Azure VPN client with Azure Virtual WAN and AD authentication. The following problem: the VPN connection is interrupted at irregular intervals and then reconnects automatically. We get an…
Azure WAN and P2S VPN Forced Tunneling
I have setup Azure WAN with a secured hub(Azure Firewall). WAN also has a P2S VPN which am successfully able to connect to. I understand forced tunneling was not an option before Azure VWAN, but now can i do forced tunneling for my P2S clients and give…
Error selecting NetworkVirtualAppliance under vWAN/HUB
hello I'm trying to add a Cisco c8000v to my vWAN/HUB. vWAN and HUB is created. The next step "should be": create the Network Virtual Appliance in the vitualHUB. When i do that, i get the error "The extension encountered an unexpected…
DNS Resolution Issues across Hubs
I have an existing VWAN and single VHUb. The Existing setup. All that is shown here in Subscription A works great. The sub A hub does not have a Firewall at this time. The VNets that are peered with the existing Hub, all have their Vnet DNS set to…
Virtual WAN gateway fails to provision
For a couple of days now, I have been trying to provision a (VPN) gateway for a Virtual WAN hub in Azure. I have Owner roles on all available subscriptions and I am Global Administrator on the connected Entra tenant. The Virtual WAN and the hub are both…
vHub SDWAn BGP (increase vHub Routing units)
Hello All, When we deploy SDWAN NVA in the vHub is build 2 BGP with 2 routing units in Azure vHub now we need to increase the capacity of vHub by increasing the routing units to 5 we did it and it is working but i was under impression that extra…
vWAN for SDWAN and Firewall - critical design
@Anonymous If you can help Here, please. i have vWAN with multiple vHubs (assume vHubx and vHuby , each one in different region). vHubx and vHubY hosting SDWAN NVA that make fullmesh connection with all SDWAN sites. but vHubx and vHubY are not…
Connectivity between three different companies infra hosted on Azure
Dear Team, Existing Configuration: In the current setup, Company 2 has established a Site-to-Site (S2S) connectivity with Company 3, utilizing Virtual WAN. This arrangement allows Company 2 to access the SAP HANA application hosted by Company 3. Desired…
vWAN vHub connection to another Subscription vNets
Hello, i am planning a vWAN (assume in Subscription X) , where all vHubs will be in the same subscription. and all vNets are in another subsctription (Y) so all connections from any vHub will be cross subscription (X < -- > Y) 1- is there…
Exporting static route between virtual hubs
Hi, We plan to deploy a network topology with three levels : first (top) level with a virtual wan and 2 virtual hubs, for two main Organisation Units, second level with 6 « second level » hubs, each one acting as a hub for a specific business unit,…
How to allow only people from Entra Group to connect to Azure VPN?
My company implemented Azure Virtual WAN with both site-to-site and point-to-site connections. Employees would use Azure VPN client to connect to Azure resources. Admins would download virtual hub User VPN profile and import it to user's VPN client and…
Site to Site HUB Routing issue for in Azure VWAN
Greetings, I am building a proof of concept architecture using Azure VWAN and having issues routing internal private traffic between branches. For sake of simplicity I will include only the parts of the infrastructure that are relevant to the…
Azure Virtual WAM - Routing Intent configured
Hi, I have a simple question. in Azure Virtual Hub in Virtual WAN, if we configure Routing Intent and protect all connections with Azure firewall (Internal and Internet). If i add a static route in Connection, to send internet traffic to a NVA place in…
Using BGP peering with Azure route server for hub and spoke model vs Azure VWAN
Our scenario - We have two separate environments setup on Azure as below: 1. Hub and spoke model with third party NVA connected to on-prem with ExpressRoute connection 2. Azure Virtual WAN integrated with Azure firewall, connected to on-premise…
Can NVA be placed behind Azure load balancer and Load balancer Frontend IP can be used to exchange bgp routes?
We are planning to implement Fortigate SDWAN devices in a spoke Vnet. They are in HA mode with Azure load balancer. We want to exchange the routes from SDWAN and Azure Virtual Hub. Can there be BGP setup between azure virtual hub to Azure load balancer…
Cisco SD-WAN 800v BGP peering with VWAN hub
Hi, I have 2 regions of Azure connected to each other via Azure VWAN hub. Also we have Azure express route from each Azure region landing into the on-prem DC. We intend to manually deploy 2 x Cisco SD-WAN 8000v routers in each region and setup BGP…
Express Route and VPN together
Our scenario: We are planning to use Express Route, VWAN integrated with Azure Firewall in East US (primary site) and West US (secondary/DR site) and we will be connecting the on-premise data center with Express Route. Questions: If we are using the…
Unable to delete virtual wan resources
Hello, I am having trouble deleting a virtual wan resource group I don't have an error message when i delete the resoure group. no error when i delete any of the vwan resources. I tried the azure portal, Powershell, CLI and the REST API, but nothing…
Filter traffic from a site-to-site vpn with virtual hub, vwan and Azure firewall.
I have implemented a virtual hub, vwan and azure firewall, I need the traffic coming through a vpn site to site to be filtered by azure firewall. I am not sure how to configure it, but I have checked in microsoft documentation and I see that I could…
Azure Vwan routes level (vnet, subnet)
Hello, We wants to isolate subnets within spoke vnets. The aim is to force traffic to an NVA (not managed by vWan) We thought it would be possible by overriding default route to vnet in vWAN route table. For instance, if my spoke is 10.21.4.0/24, I add a…