Site to site VPN tunnel in Azure virtual WAN

Balaguru Krishnamoorthy 1 Reputation point
2021-09-02T06:37:20.227+00:00

We need to build a tunnel between on premise device with Azure using Virtual WAN network gateway, but we need to double nat subnet on both locations( to hide both VNET subnet as well as on premise internal subnets).It seems VPN gateway does not support port address translation to use single NAT IP. Is there any other option to achieve it.

Azure Virtual WAN
Azure Virtual WAN
An Azure virtual networking service that provides optimized and automated branch-to-branch connectivity.
189 questions
Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,389 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. SaiKishor-MSFT 17,201 Reputation points
    2021-09-02T19:03:16.597+00:00

    @Balaguru Krishnamoorthy Thank you for reaching out to Microsoft Q&A. I understand that you want to NAT traffic on both sides of the VPN i.e. on Azure as well as On-premise sides. Azure VPN Gateway supports only 1:1 NAT rules. It does not support Port Address Translation or PAT. If you want to implement PAT on Azure side, I would suggest you to go with a 3rd party VPN solution on Azure Marketplace such as VNS3. Hope this helps.

    Please let us know if you have any further questions and we will be glad to assist you further. Thank you!

    Remember:

    Please accept an answer if correct. Original posters help the community find answers faster by identifying the correct answer. Here is how.

    Want a reminder to come back and check responses? Here is how to subscribe to a notification.