Forum Discussion
Longb1
Dec 14, 2021Copper Contributor
Why do vpn/application gateways need to be in their subnet?
Normally in a network, your default gateway would be in the same subnet (well, mine is at least), but I can't figure out why azure requires your gateway needs to be in their own subnet, with like 3 s...
ElwinTech
Nov 03, 2025Copper Contributor
That’s a great explanation,Kidd.
To add a bit of background, in traditional networking the default gateway indeed lives within the same subnet as the hosts. Azure’s approach extends that logic as the gateway subnet acts as a dedicated control segment where system routes and reserved IPs can operate without overlapping with workload subnets.
https://learn.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-vpngateways
https://pingmynetwork.com/network/ccna-200-301/default-static-route