S2S VPN Connection Custom IPsec policy with client disconnects and never re-establishes
We have a customer that is still using IKEv1 protocol and we are doing our best to accommodate. It is an old connection from years back and we've always had intermittent disconnects. The connection went down recently and we tried to get them to move to…
Local Network gateway BGP
Hello, I have topology like below where i set VGW as active active for redudancy. With this topology should i define the LAN address 10.107.0.0/16 and 10.210.0.107 in LNG1 and 10.107.0.0/16 and 10.210.0.207 in LNG2? Or we let the address space to be…

Azure VPN Connection Issues on MacBook Air M1
Unable to connect to Azure VPN on MacBook Air M1. One day, the connection works fine, but the next day, the error message "Failed to connect to server. Server ended connection" appears. Manual installation of Rosetta did not resolve the issue.…
Certificate information is empty, ERROR: client certificate issuer cannot be empty
I tried to import the certificate into azure VPN after downloading from virtual-network-gateway on Azure. While using and saving the imported .html file in the Azure VPN Client, it is giving the following error, "client certificate issuer cannot be…
Server did not respond properly to VPN control packets. Session State: key Material Sent
I tried to add the certificate into azure VPN after downloading from virtual-network-gateway on Azure. It is giving me the above error when I try to connect. What are possible things that I can check to fix it?
update IP SKU on VNG
How do I update publik IP associated with VNG from Basic?
Error While Connecting to Azure VPN: "Custom Script (to update your routing table) failed (80070002)"
Hello, I am encountering an issue while connecting to an Azure VPN. After initiating the connection, I get the following error message: Hello, I am encountering an issue while connecting to an Azure VPN. After initiating the connection, I get the…
How to upgrade VPN Gateway from Basic tier to VpnGw1AZ without deleting existing connections?
Problem: I am currently using a Basic tier VPN Gateway in Azure. I need to upgrade it to VpnGw1AZ with a Standard Public IP. However, there is no direct upgrade option, and I cannot delete the existing VPN Gateway because it has several active…
P2S VPN with custom audience on Mac OS 15.3.1 Sequoia Unable to use Digicert Global Root G2
I've created a VPN Gateway and configured P2S following the official MS tutorial "https://learn.microsoft.com/en-us/azure/vpn-gateway/point-to-site-entra-register-custom-app". My application is running on a custom audience so that I can control…
Azure Basic to Standard SKU change
Azure Basic to Standard SKU changes. I currently have a number of File shares setup in Azure and it looks like I do not need to implement these changes in this area. However I do have a VnetPip and LicenseServer-ip when I search on Public IP…
Azure VPN User access logs
How to get distinct O365 users list who have accessed Azure VPN
Unable to Ping Azure VM from Nested Hyper-V VM
Attempting to ping an Azure VM (10.3.1.4) in the Hub Virtual Network (10.3.0.0/16) from a nested VM (VM1 at 192.168.100.10) running on a Hyper-V host (10.2.1.5) within another Virtual Network, HyperVNet (10.2.0.0/16). The networks are connected via a…
Site-to-Site VPN connection over ExpressRoute private peering not valid
Hello, It seems this article is either outdated or wrong with what it is currently proposing - the requirements most likely need to change. We have the same issue as described here, we have full control of the firewall from on-prem and can…
Do we need to upgrade from basic SKU public IP to Standard?
Do we need to upgrade from basic public IP SKU before 9/2025 or will our basic public IP SKU continue to work past the retirement date? The notice isn't very clear as to what will happen to existing basic public IP SKU, we just see that we won't be able…
VPN Gateway drops tunnels when NAT rules feature enabled
Hi All, I am very new to Azure (but have 20+ years experience in networking) so apologies of this is something simple im missing here. I have successfully configured a site-to-site VPN tunnel between an on-prem Meraki MX firewall and a VPN…
Safe Update of Azure VPN Gateway API Version Without Downtime
I am currently integrating Azure VPN Gateway with Managed Identity for VPN authentication using certificates (preview feature). However, I encountered the following error during deployment: { "error": { "code":…
Azure VPN Gateway Routing Issue
Hello, We have 2 vNets in different Location, we need to configure interconnection between them. We configured 2 vNet and 2 VPN Gateways, status is connected but traffic between servers is not passing, as I think issue is in routing side, I tried a lot…
How to connect to a containerapp on azure from s2s vpn
I need help connecting to a container app on azure from a site to site VPN. What I have done: Create a Site to Site VPN which connects from our office site to the Azure cloud. I have proved this works by creating a Virtual machine in Azure and…
Part of routes learned by Azure VPN Gateway is not propagated to its VNET
Good day, We have a very curious and non-standard situation. We have a VPN Gateway connected to number of BGP-over-IPsec peers. It learns routes from them by BGP and propagates (injects) them into its VNET (as well as to a number of spoke VNETs, all…
Virtual Network Gateway BGP
My vnet address space is 172.16.0.0/24 with below detail Then i create Virtual Network gateway and my BGP Peer IP address 172.16.0.62. When we creating the Local Network gateway should we assign BGP peer IP Address for my onprem devices under subnet…
