What is the Cisco 8000v instance size, as part of the "create a Network Virtual Appliance" process
I am onboarding the Cisco SD-WAN 8000v routers in Azure portal as part of create a Network Virtual Appliance (NVA) and it takes me to the Azure market place page "Cisco SD-WAN for Azure Virtual WAN". However it doesnot allow me to choose the…
NVA & vHub routing issue
I have below network : 2 vNet in eastus connect to vHub1 ( vNet1 & vNet2 ) 1 vNet in CentralUS connect to vHub2 ( vNet3 ) vHub1 & vHub2 are belongs to my vWan1 ( vHub1 in eastus , vHub2 in centralUS ) 1 VM in each vNet, they can connect to…
Different egress points for prod and non-prod using virtual wan
Hi, I'm looking to use Virtual WAN for centralized internet egress and vnet-to-vnet connectivity. However, I need to be able to differentiate between non-prod and prod egress traffic while allowing access from a common management network to both non-prod…
vWAN Hub not allowing transit traffic from 3rd party NVA
Routing issue with NVA VM.png Hi Folks, I am new to MS Azure and I am struggling with this routing issue since a day now, trying to simulate an upcoming deployment scenario in my free-tier account, please refer to the diagram attached to get more…
ExpressRoute and FortiGate BGP Issue in a Azure Virtual WAN
Good evening. We have deployed an Azure virtual WAN with a secured hub. The Azure virtual WAN has a VPN and ExpressRoute gateway deployed. The Azure virtual WAN routing preference is configured as ASPATH. All internet and private traffic is routed…
Where can I find Azure (private) DNS / Network limitations and what are their consequences
Hi, some of the azure products form an important part of our infrastructure. There are a few, but most importantly a private DNS zone, a virtual WAN, a virtual network, a MSSQL database, a private DNS resolver, and a couple of VMs for DNS forwarding via…
Virtual Wan Site to Site VPN Tunnel stops working after a couple days
Hello, i have a VPN site-to-site tunel between virtual wan and a fortigate appliance. Both sides show the tunel as UP and Connected, traffic flows in both directions and after a couple days it stops. Local Network: 172.24.8.0/21 Remote Network:…
Vnet peering
Is it possible to peer two vnet in the same region directly along with the vWan peering it already has. I need to make services between the vnet work while resolving vnwan route issues. Adding direct peering while it has a vWan peering should not cause…
Azure Wan VPN Azure Firewall Routing Issue
I have a secured WAN with firewall and routing intent configured (internet and private ) traffic going through firewall. After creating a VPN site and connection to the HUB, i can confirm that the tunnel is UP and i see the on-premise's subnets…
P2S Internet Access with ALZ Architecture (vWan)
I'm doing a POC learning a bit more about Azure vWAN. The infrastructure is based on the ALZ architecture (with minor adjustments). No ER, just using S2S and P2S VPN (only P2S configured at this stage - OpenVPN w/ AAD + address pools). Have a few spokes…
NVA firewalls in availability set, how to prefer one over the other for outbound traffic
I have a standard load balancer sandwich design, with two NVA firewalls in an availability set, with spoke vNets peered to the NVA vNet. UDR's have static routing towards the internal load balancer. it all works well enough I have a requirement to prefer…
Azure route server causes loss of connectivity from on-prem to azure
On prem network connectivity into azure is by means of Cisco SDWAN terminating in virtual wan hub which routes into azure vnets via Palo Alto NVA's. Deploying an Azure route server in the NVA vnet causes loss of connectivity from on prem to azure. Loss…
P2S VPN in Hub
We have created Virtual WAN, and added connectivity HUB and Hub has been configured Point to site VPN, now we have multiple VNET's added to HUB. Please let me know whether below scenarios are expected behavior in HUB and why? 1.Once I added VNET into…
VM Secure access using WAN & HUB(P2S VPN access)
Hello Team, We have created Virtual WAN, and added connectivity HUB and Hub has been configured Point to site VPN, now we have multiple VNET's need to add into HUB. While adding the VNET connections, what is the recommended settings of "Associate…
VM Secure Access from Workstations
Hello Team, We have created Virtual WAN, and added connectivity HUB and Hub has been configured Point to site VPN, now we need to access our VM's which is hosted in different resource groups with Private IP from workstations when we connected to Azure…
China user unable to connect to Point to Site User VPN
Hi All , Have a site of users from china that was not able to connect to the P2S network created in Azure vwan .Need some help on this
Cannot Connect Site-to-site VPN between Azure vWAN and On-premise Zyxel SBG3300-N
I have created Azure virtual WAN then create virtual hub and the create site-to-tie VPN inside the Azure virtual hub. For VPN connection, I am setting IPsec to default but cannot connect to on-premise VPN device Zyxel SBG3300-N. I try to change IPsec…
Virtual WAN
Is it true that Connection between the virtual hub cannot be secured by Azure firewall and only the traffic between the spoke and vhub is secured by Az firewall premium? Or this limitation has been fixed now
VWAN Migration
My client is about doing a POC for VWAN before migration current VNET hub to VWAN. We would like a better explanation and guide. BGP/IPSEC setup between Virtual Wan and on-premises and setting up BGP neighbor. Create second link to on-premises, second…
Vwan and secured hub
Does virtual WAN and secured hub need to be in same subscription? How do we plan for resources across continental regions?