Forum Discussion
SB V
Jun 04, 2021Brass Contributor
Azure Firewall query
Hi Community, Our customer has a security layer subscription which they want to route and control all other subscription traffic via. Basically, they want to remove direct VPeers between su...
NimusTechnologies
Oct 28, 2025Copper Contributor
Hi there,
Good question! I’ve worked on similar setups where companies wanted to route all Azure subscription traffic through one main security layer for better control and security.
From experience:
Azure Firewall is great if you want detailed traffic control, centralized rules, and easy monitoring.
Azure Virtual WAN is better when you have multiple regions or branch offices and need simpler network management.
In your case, Azure Firewall in a hub-and-spoke setup might work best, especially since you also use Palo Alto for on-prem access.
I’m part of the team at Nimus Technologies, and we often help businesses design and set up secure Azure environments like this. Happy to share more ideas if you’d like.
Hope this helps!