Subnet association to firewall

Handian Sudianto 4,836 Reputation points
2024-08-28T09:14:49.0566667+00:00

All of my Azure VM use one subnet, and if this subnet associated to the azure firewall can i exclude some VMs to not use the firewall?

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
653 questions
0 comments No comments
{count} votes

Accepted answer
  1. KapilAnanth-MSFT 44,311 Reputation points Microsoft Employee
    2024-08-28T09:58:45.78+00:00

    @Handian Sudianto ,

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    I take it that, by "subnet associated to the azure firewall" - you mean to say you attach a UDR to this subnet that routes traffic to the Azure Firewall.

    Unfortunately, this won't be feasible.

    • A UDR is attached to a subnet and all the VMs in this subnet must abide by the effective routing at Subnet Level
    • A single VM in a subnet cannot override the UDR specified at Subnet level

    What you can instead do is,

    • Create Rules in the Firewall so that these VMs' traffic are always allowed (not inspected)

    Kindly let us know if this helps or you need further assistance on this issue.

    Thanks,

    Kapil


    Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.