Nov 25 2021 06:34 AM
Hi,
I have a problem with connecting SMB network shares from an on-premise Server to a VM located in azure over a Site-to-Site VPN and VPN gateway.
We tried everything but it seems that these and other protokolls are natively blockeed from the Azure vpn gateway, is this correct?
Are there any solutions to this problem or did I miss something in the configuration or connection/authentication?
Thanks and regards
Nov 28 2021 10:39 AM - edited Nov 28 2021 10:41 AM
Hmm, it should work (SMB is one of the ports, that AD needs for SYSVOL replication - if you have a domain controller in Azure, is it replicating properly with your on-premises machines?), as long as the site to site connection is up and running and the firewall allows it.
https://docs.microsoft.com/en-us/azure/storage/files/storage-files-configure-s2s-vpn
I would check the route back to on-premises from Azure, check the Windows Firewall configuration and your third party firewall configuration actually allows SMB through.
Can you connect to a fileserver using its IP address?
On a side note, have you looked at Azure File Sync ( https://docs.microsoft.com/en-us/azure/storage/file-sync/file-sync-deployment-guide?tabs=azure-porta... ), maybe a more suitable option?
Nov 28 2021 03:17 PM
Apr 14 2022 06:47 AM
Apr 14 2022 08:33 AM
@m77ewlHi, yeah, the problem was the switch in the vpn routing table configuration for Distributing gateway routes, this was set to no but after enabling it to yes, it was working^^
Even when you have special routing in place, this switch must be enabled in the vpn routing table.
Hope this helps.