ExpressRoute and VPN Gateway Deployment

Damen Barker 20 Reputation points
2024-08-02T11:50:15.8733333+00:00

We have a new Azure subscription with a new ExpressRoute circuit and a ER Gateway.

We are looking to connect our existing subscription, which has an Azure VPN gateway deployed. Can we just vNET peer between the vNETs or is there any other requirements to get the VPN gateway to build a VPN tunnel over the new ExpressRoute to the on-prem VPN device.

I have a feeling we will need some sort of NVA in the ExpressRoute subscription

Drawing

Any advice would be greatly received

Thanks

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,514 questions
Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
365 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. KapilAnanth-MSFT 44,311 Reputation points Microsoft Employee
    2024-08-02T12:43:07.1466667+00:00

    @Damen Barker ,

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    May I ask what your requirement here is?

    A. If you're requirement is just to enable connectivity between ExR Gw deployed VNET and VPN Gw deployed VNET

    • You can go for the above architecture
    • Your OnPrem will not be able to access resources from the VPN Gw deployed VNET

    B. If you want to enable connectivity between OnPrem and VPN Gw deployed VNET

    • This configuration is not the correct approach.
    • Creating a VNET Peering would only enable connectivity between ExR Gw deployed VNET and VPN Gw deployed VNET
    • OnPrem and VPN Gw deployed VNET will not have connectivity.
    • What you can instead do is

    NOTE : If you have no dependency

    on the old VPN Gw, you can simply delete it and no need to create a new one in the new Subscription.

    Hope this helps.

    Thanks,

    Kapil


    Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.