Scenario: Two separate companies, each has their own Azure infrastructure. Both companies have VNET’s with ExpressRoute back to on-premise MPLS. Both have Palo Alto VM Series firewalls in hub and spoke design on these Azure VNET’s. Peering is not an option due to route advertisement limitations when using ExpressRoute from two locations. Question: Is it possible to create a IPSec tunnel between these two firewalls? Thanks.
... View more