Azure Firewall – Hub/Spoke Hybrid Network with Forced Tunnelling

The Azure Firewall is a great option if you want to have a centralised firewall device within your Azure network architecture. I followed the Microsoft documentation to integrate the Azure Firewall into a Hybrid Network consisting of an on-premises network, a centralised Azure Hub Network and an Azure Spoke VNet. However, I was getting connectivity […]

Read More »

Azure Firewall – Hub and Spoke UDR configuration

I was recently working with a Hub and Spoke VNet design that was connected to on-premises through ExpressRoute. The goal is to use the Azure FW within the Hub VNet to provide centralised firewall control between the on-premises network, hub and spoke VNets. To set up this scenario you have to create UDRs on the […]

Read More »

Azure VNet Peering Gateway Transit Hub and Spoke

If you read the documentation on the Azure docs page it is not clear that if you have VNets configured in a Hub and Spoke design, it is possible for each spoke to be able to communicate with each other without requiring Network Virtual Appliance (NVA). This is possible using Gateway Transit and User Defined […]

Read More »

Create Azure UDR from CSV

This script makes it easy to define Routes and create a User Defined Route (UDR) table. It can be downloaded from here. The script supports the Next Hop Type Tags Internet, VirtualAppliance, None, VirtualNetworkGateway and VnetLocal. e.g. routeName addressPrefix nextHopType nextHopIp Azure_KMS 23.102.135.246/32 Internet Virtual_Appliance 172.16.0.0/16 VirtualAppliance 192.168.0.100 Null_Route 172.17.0.0/16 None Vnet_Gateway 172.18.0.0/16 VirtualNetworkGateway Vnet_Local […]

Read More »