MicrosoftDocs / azure-docs

Open source documentation of Microsoft Azure
https://docs.microsoft.com/azure
Creative Commons Attribution 4.0 International
10.25k stars 21.42k forks source link

Azure Firewall on VNet with VPN Gateway subnet and Peering not works #13137

Closed waynemsft closed 6 years ago

waynemsft commented 6 years ago

Hi,

We've tested Azure Firewall with pure cloud environment - 1 vnet, 3 subnets, and it works fine. However, when we tested Azure Firewall on hybrid cloud environment, we found odds things. We cannot ping private IP address of Azure Firewall correctly. Is there any existing issues/limitations related to such configuration? Thank you.


Document Details

Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

TravisCragg-MSFT commented 6 years ago

@Thanks for the feedback. We are actively investigating and will get back to you soon.

yairt1974 commented 6 years ago

Azure Firewall public preview supports the link to the internet and spoke to spoke communication. We haven't tested hybrid links for public preview and are working to tentatively certify this scenario for GA.

waynemsft commented 6 years ago

Hi,

Another questions is about the AzureFirewallSubnet subnet. I saw a limitation on the subnet - it must contain at least 128 IP addresses (i.e., /25). May I know the reason/consideration for this limitation? Thank you.

vhorne commented 6 years ago

@waynemsft That's so that there are enough addresses available for auto-scaling to work.

vhorne commented 6 years ago

please-close

TravisCragg-MSFT commented 6 years ago

@waynemsft We will now proceed to close this thread. If there are further questions regarding this matter, please tag me in your reply. We will gladly continue the discussion and we will reopen the issue.