Link to home
Start Free TrialLog in
Avatar of CHI-LTD
CHI-LTDFlag for United Kingdom of Great Britain and Northern Ireland

asked on

Azure Virtual Desktop not routing

Hi

I'm having issues routing between Azure Virtual Desktop deployment across VPN to my on premise network.


Current setup:

Azure VPN configured with Cisco ASA Firewall connecting all Subnets into Azure.

Azure Subnet in production 10.0.0.0/24

AVD subnet 10.0.10.0/24

Both subnets exist in same RG and vnet.

On premise subnet is 172.19.0.0/16

There is no firewall or NSG on the AVD deployment, only a newish NAT GW for routing out traffic to the web from 1 IP.

I can route between the subnets within azure as expected.


Any ideas?  ASA ACLs, NATGW issue or??


Thanks



Avatar of J0rtIT
J0rtIT
Flag of Venezuela, Bolivarian Republic of image

Hello CHI-LTD

I would start by checking the similar configurations on both sides.
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-3rdparty-device-config-cisco-asa

If you are able to do Site to Site VPN between both sides you should be able to ping the AVD from on-prem to Azure.
if you do, and you're trying to do AVD, please check the ports in the Security (NSG) not sure if AVD uses them as regular Virtual machines in azure does.
Avatar of CHI-LTD

ASKER

Hi Jose

There are no NSGs configured on the VMs directly or within the resource group.

Will pass the MS article onto the network team and post update.

Thanks

ASKER CERTIFIED SOLUTION
Avatar of CHI-LTD
CHI-LTD
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial