Forum Discussion
Marcus Pettersson
Oct 09, 2019Copper Contributor
Vnet routing over IPSEC
Hello, I have set up a Site-to-Site IPSEC connection between my customers Vnet in Azure and their on-premise network. I all works just fine and the routing works fine for the address spaces in t...
CraigWilson_
Oct 11, 2019Brass Contributor
Take a look at setting up a User Defined Route. UDR will allow you to force addresses down any path. Azure routes traffic in the following order, User-defined route, BGP, route System route.
You should be able to tell the route to use either a virtual appliance, of the VPN gateway are the next hop.
If this fails, look at using Azure Firewall as a router to replace a virtual appliance.
- Marcus PetterssonOct 13, 2019Copper Contributor
Hi CraigWilson_ and Bryan Haslip
Thanks a lot for your help! I will try your suggestions and hopefully get it to work!
- Bryan HaslipOct 12, 2019Iron Contributor
+1 to CraigWilson_ This is exactly how to can accomplish this. You can use the tools in network watcher to verify the traffic flow as well. IP flow verify and Next hop utilities can confirm its routing to your liking.