from my on-premises setup i am unable to send the traffic to another VNET behind my Azure VNET. I have an Expressroute Gateway and an NVA in my subscription.

Sujith Gopalakrishnan 0 Reputation points
2024-09-04T14:29:01.4933333+00:00

I have an on premises range 192.168.200.8/29, connected to Azure Network through Azure Express Route (gateway type - Express Route) and and NVA-Firewall. We are unable to route the traffic from an on-prem to another VNET. The traffic is getting dropped at the Microsoft Edge router and not reaching the NVA firewall. Is there a way that we can force all the traffic from on-premises reaching the Microsoft Edge router to forward to NVA-Firewall?

Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
367 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Ganesh Patapati (Quadrant Resource LLC) 175 Reputation points Microsoft Vendor
    2024-09-06T08:45:07.19+00:00

    Hi Sujith Gopalakrishnan,

    We appreciate your patience!

    Welcome to the Microsoft Q&A Platform! Thank you for asking your question here.

    I apologize for the inconvenience. As I misinterpreted your query earlier, I've corrected my response below.

    You must properly establish your network settings. To make sure that traffic from your on-premises network is routed through your NVA and not dropped, use the following high-level approach:

    • Verify that BGP (Border Gateway Protocol) is set up on your ExpressRoute circuit to permit dynamic routing.
    • Make that the routes being advertised by your on-premises BGP peers are correct. I apologize for the inconvenience. As I misinterpreted your query earlier, I've corrected my response below.

    Refer: https://video2.skills-academy.com/en-us/azure/expressroute/expressroute-routing#dynamic-route-exchange

    You may also check out the thread below to see how routing should operate in certain instances.

    Refer: https://video2.skills-academy.com/en-us/answers/questions/568983/azure-express-route-forced-tunneling-with-nva


    If you have any further concerns, please do not hesitate to contact us.

    We are pleased to help you. I look forward to your response and appreciate your time on this.

    Regards,

    Ganesh

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.