Site to Site VPN Unable to Ping Azure VM

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Site to Site VPN Unable to Ping Azure VM

Hello.

 

I recently setup our Site to Site VPN to Azure and am having an issue with pinging to Azure from OnPrem.

 

The tunnel shows connected and I can ping my on Prem devices from Azure without issue.

 

I used this article to setup the connection: https://thetechl33t.com/2020/11/18/azure-site-to-site-vpn-with-palo-alto-firewall/

 

I setup the tunnel twice and the first time it worked fine but now not sure what I have done incorrectly.

 

Any assistance with this would be very much appreciated so feel free to let me know what I can do to assist getting this resolved.

2 REPLIES 2

L4 Transporter

Hi there,

The fact you can ping in one direction proves, as you say, that the VPN is working, but also the routing between those subnets. Since the initialisation of the traffic flow is only working in one direction suggests this may be a security policy issue. 

Can you confirm that inter-zone policy between the VPN and 'inside' zone exists. Also check there is an equivalent NSG in Azure on the VNET is you have it implemented.

 

cheers,

Seb.

I am sure the issue is with my zone configuration. 

 

Any chance you could show me how to create an inside zone that would work for what I am trying to do? 

  • 1142 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!