- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
09-06-2018 01:13 PM
Can you describe what you want exactly just a bit more. I've answered below if any of these work, but not 100% what you are asking for.
I would think that what you are looking for is that you want to extend access so that when users connect to say 'HQ_Portal' they then have access to Azure resources? To accomplish this you need a route to Azure, which would either be done through an ExpressRoute connection (or whatever they call it) or through establishing an IPSec tunnel between your Azure Gateway and your Firewall. You would then have to allow access to that resource just like anything else through GlobalProtect. Then whenever connected to 'HQ_Portal' you would also give users the ability to access any Azure resource.
So essentially within your virtual network gateway you go to 'Connections' and create a Site-to-site connnection back to your firewall. Then everything else is handled exactly like any other IPSec tunnel connection.
09-06-2018 01:23 PM
Hi Bpry,
Thank you for your response.
The situation that I have is basically that a client has Palo Alto VPN on a different location (Let's say Canada).
I want to provide them with MS Azure Cloud Azure File Storage directly on the cloud.
The problem is that when their mobile users (Let's say China, UK, and Africa). To access the files on the cloud they have to connect to the VPN first (in Canada) and then access the cloud files that is located on their region/country. So that is very slow.
Does Palo Alto have a way to extend that VPN capabilities onto Azure so that users can just login to VPN anywhere and access the cloud files along with it?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!