How to setup Site to Site (S2S) VPN from local OnPrem to Azure Cloud in 10 steps

Поделиться
HTML-код
  • Опубликовано: 23 авг 2024

Комментарии • 103

  • @biksuni
    @biksuni 11 дней назад

    Watched in 2024. So, precise tutorial. No bullshit and unwanted explanation. Subscribed to your channel. Thanks.

  • @hjorkera
    @hjorkera Год назад +22

    Watching in 2023. The Azure portal has changed a bit, but the information it's still relevant.
    Great tutorial perfectly explained, one of the best I have seen.
    Thanks!

  • @farookhshaikh
    @farookhshaikh 3 года назад +27

    Thank you for the Video, descriptive and up to date
    1. Create Resource Group
    2. Create Virtual network
    3. Create Local Network gateway
    4. Create Public Ip Address
    5. Create Virtual Network gateway
    6. Create Connection
    7. Create VM for testing Azure
    8. Configure RRAS on local Windows server
    9. Add Static route in RRAS
    10. Test with RDP to a VM in Azure

  • @ivotebid1991
    @ivotebid1991 27 дней назад

    Very direct and simple teaching. Thank you

  • @sanji5501
    @sanji5501 5 месяцев назад +1

    good video, watched and followed in 2024 March, all steps are same except for few subnet requirements which is a simple modification. thanks :)

  • @chichilam4907
    @chichilam4907 3 года назад +5

    this is the most clear explanation i can see so far. Good Job mate!

  • @JK-ex2eo
    @JK-ex2eo 3 месяца назад +1

    Works very well... some options has changed but it's still very relevant. Thanks alot.

  • @Jiggs224u
    @Jiggs224u Год назад

    Many thanks! Helped me setup a site to site with my router itself without having to setup RRAS!

  • @kenmurphy4259
    @kenmurphy4259 2 года назад

    Lovely speaker, excellent demo, clear and concise

  • @oscarurbina9332
    @oscarurbina9332 Год назад

    Very clear step-by-step tutorial. This is best that I have seen/found about azure tutorials. Excellent job!!!

  • @tavir0411
    @tavir0411 Год назад +2

    Good video ..it would be better if you could add steps to connect to vpn from windows 10 machine as most of the time you wish to add vpn from home and most of home users use windows10

  • @iamaguest2
    @iamaguest2 11 месяцев назад

    i love the way you present:
    very clear about the steps.

  • @satheeshkumaraswamy
    @satheeshkumaraswamy Год назад

    I have been trying to get details explanation like this. Indeed it happened now. Thank you so much.

  • @martinsagan
    @martinsagan 7 месяцев назад +1

    Perfect video tutorial. Why you used Dynamic public IP instead Static public IP? And why you didn't use "Basic" SKU for Virtual Network gateway? It's more cheaper and sufficient for one connection.
    Thanks.

    • @prabeshm8056
      @prabeshm8056 5 месяцев назад

      Yes even i could not find basic VPN Sku in Console and could not find any documentation to create it via powershell.

  • @toptalkers7980
    @toptalkers7980 3 месяца назад

    Thanks for making this concept so simple.

  • @MohammadSameerA
    @MohammadSameerA 3 года назад +2

    very informative and simple. a million thanks wouldn't be enough man!!!

  • @nareshreddy7473
    @nareshreddy7473 2 года назад

    Your explanation is really good. Would request you to share further videos ( Azure ).

  • @jeffwads
    @jeffwads 3 года назад

    We use a Sonicwall, but this method is a great alternative and cheaper to boot. Nice work.

  • @leoleo9771
    @leoleo9771 3 года назад

    Easy to undestand. very well explained. thank you sir

  • @VivekSingh-cq5rt
    @VivekSingh-cq5rt 3 года назад +1

    easy to understand video on Azure site to site VPN

  • @mohamaddanfarhan
    @mohamaddanfarhan 5 месяцев назад

    Great and easy wat to establish the Azure Site to Site VPN

  • @kumards4527
    @kumards4527 5 месяцев назад

    Very clear explanation, Thank You

  • @Shravan_Reddy
    @Shravan_Reddy Год назад

    Very very nice explanation. You are awesome!!

  • @tariqahmed2710
    @tariqahmed2710 Год назад

    Thanks , nice explanation, i able to do each step clearly and establish connection between on prem and Azure , thanks alot :D

  • @srikanthgiddey3928
    @srikanthgiddey3928 11 месяцев назад

    Thank you very much for the video. It is very much useful. I really appreciate your efforts to put out this video

  • @abhik2702
    @abhik2702 4 месяца назад

    Wonderful

  • @tejendergoud254
    @tejendergoud254 Год назад

    very quick and easy to understand thanks for the video

  • @uYahbonaEmbo
    @uYahbonaEmbo 2 года назад

    Awesome stuff i have my work cut out just on these two videos , two day project lets get it on.

  • @sarathfromsaudi
    @sarathfromsaudi Год назад

    Thank you so much for this video. Clear explanation and to the point. Appreciate it

  • @jordanjones6131
    @jordanjones6131 7 месяцев назад

    You are the man thank you!

  • @funwithvanshika4405
    @funwithvanshika4405 3 года назад

    Very Very good Video and i'm planning try my self

  • @TheAqub
    @TheAqub Год назад

    Thank You. Great explanation but I have one doubt. How to set up traffic forwarding on an on-premise gateway VM / device in such a way that when receiving traffic from Azure intended for a different on-premise VM other then the gateway VM

  • @royalblue5367
    @royalblue5367 2 года назад

    Thank you so much! Very clearly explained in perfect detail

  • @marceldutoit9393
    @marceldutoit9393 Год назад

    Super cool video, please continue creating these vids

  • @funwithvanshika4405
    @funwithvanshika4405 3 года назад +1

    You shared share onprem drive to Azure VM, Is it possible Can i map azure VM drive to OnPrem ?

  • @FernandoLopez-el8mp
    @FernandoLopez-el8mp Год назад

    A really great tutorial, thank you!
    PS: "Indivisa manent" 😉

  • @user-cd8ml1ru6t
    @user-cd8ml1ru6t 6 месяцев назад

    Great content and very helpful, thank you.

  • @concept-seven
    @concept-seven Месяц назад

    Great video thanks. When you create the /26 and /28 subnets on the /24 network, does that mean that all traffic on any of these subnets can freeley get to the other subnets?

  • @gigmix1958
    @gigmix1958 Год назад

    Great clear video thanks, one thing I don't understand is why does there need to be a default subnet?

  • @moizkamran6081
    @moizkamran6081 3 года назад

    Amazing Video. Very clear and concise. Thank You @ConsulCat

  • @qkhader81
    @qkhader81 Год назад

    Many thanks for the great tutorial.

  • @ranadheerreddy2996
    @ranadheerreddy2996 2 года назад

    Thanks for this amazing explaination.

  • @RicardoDiaz21129
    @RicardoDiaz21129 3 года назад

    Great video. Clear and to the point.

  • @bhavikdesai1988
    @bhavikdesai1988 2 года назад

    best explanation!! thanks for the great video

  • @souravroy3124
    @souravroy3124 2 года назад +1

    @ConsulCat
    Can we connect Azure Linux or other VMs on the same VNET from the On-Premises Windows server after doing the steps you have demonstrated or we need to perform any other steps?

  • @myolds_1david952
    @myolds_1david952 2 года назад

    This is one of the best explainer videos I've ever seen. Do you have a video on Azure DNS Private Resolver? I like to Resolver Azure VM from on-prem and vice versa. Thank you very much

  • @PrayagSanjay
    @PrayagSanjay 3 года назад

    Thanks for such a nice explanation.

  • @devgela
    @devgela 3 года назад

    Thanks, I can create the tunnel reference with you video

  • @miravida9778
    @miravida9778 5 месяцев назад

    I ran into an issues. I wasn't able to rdp with the internal IP but I was able to ping just from the OnPrem Server. Any server/windows from onPrem not able to ping the az-vm. Where should I start troubleshoot?

  • @andrewmclaughlin2679
    @andrewmclaughlin2679 3 года назад +1

    Amazing tutorial!

  • @thejusv.s672
    @thejusv.s672 3 года назад

    Thank you sir.. Well explained

  • @howardworleyiii5764
    @howardworleyiii5764 Год назад

    Great video, very well done.

  • @balajiborra
    @balajiborra 8 месяцев назад

    I used this process ,connection is up both sides,but while lambda function trying to connect with azure private flexible postgres server private dns it couldn't resolve private dns, while trying with private ip it getting login rejected, do know how to resolve it ?

  • @JOUDALAKAY
    @JOUDALAKAY 2 года назад

    This is a great video. However, I would like to know if client vpn is not necessary instead of using remote desktop connection ?

  • @vjzp9354
    @vjzp9354 2 года назад

    how to setup cryptos for phase1 and 2? when the IPSec tunnel is up, how to configure tunnel IP address on both ends?

  • @azelaz5053
    @azelaz5053 3 года назад +1

    Could you please explain why you've set the gateway subnet to 10.0.0.96/28?

    • @francismori7
      @francismori7 2 года назад

      Arbitrary, you can use any LAN subnet you wish.

  • @prasanth01893
    @prasanth01893 3 года назад

    Very Good and thanks for you help..

  • @icoingrowth
    @icoingrowth Год назад

    Nice but for you connected a AD in equal subnet RRAS, do you think necessary additional anything in route RRAS? that’s Brazil

  • @udbalatester49
    @udbalatester49 Год назад

    Can we use one virtual network gateway to connect to both AWS and on-prem?

  • @binoyjob7257
    @binoyjob7257 2 года назад

    Well Explained .

  • @nealpan
    @nealpan 10 месяцев назад

    Great, thanks!

  • @ayushsakalley9223
    @ayushsakalley9223 10 месяцев назад

    If I have on premises server of ubuntu, then in this case what need to be done

  • @merameshmarka
    @merameshmarka 3 года назад

    your explanation is really good, simply super. one question is in real time, in general, do we use on-prem image copy? do we use Router/ NAT to connect to on-prem VM's?

  • @oliveroctoso9900
    @oliveroctoso9900 Год назад

    Great Video! this same process when creating a resource for ASHUB? this is kind of guide im looking very detailed. Thank you Sir!

  • @knownisdropunknownisocean.9282
    @knownisdropunknownisocean.9282 11 месяцев назад

    great

  • @wajidfsd
    @wajidfsd 3 года назад +1

    ON perm server is there public ip assigned or port forward used and if use port forwarding which ports are needed.

    • @dbrooker8918
      @dbrooker8918 3 года назад +1

      On the on-premise router you would have to port forward ports 500 & 4500 to the IP address of the RRAS Servers "External" facing interface.
      Note: Normally, a RRAS Server has 2 interfaces (nics). One is "Internal" i.e. facing the Servers on the Hyper-V host and one "External" facing the rest of the on-premise devices. However, whilst having 2 NIC's is good design and practice its not compulsory.
      directaccess.richardhicks.com/tag/dual-nic/

  • @tedmolavi8764
    @tedmolavi8764 3 года назад +2

    Great video explaining a Site-to-Site VPN with Azure. One note though, I noticed in your RRAS setup, you were using 255.255.0.0 for your 10.0.0.0/24 Azure subnet, any idea why?

    • @ayyappahemanth7134
      @ayyappahemanth7134 3 года назад +1

      255.255.0.0 is called network mask. please Google yourself about CIDR and Network Mask. You will get it 🙂

    • @sysarchitect3232
      @sysarchitect3232 3 года назад +3

      @ConsulCat Same question, 10.0.0.0/24 having C class and subnet suppose to be 255.255.255.0 ?

    • @akhan3682
      @akhan3682 2 года назад

      @@sysarchitect3232 it can be whatever you want to allocate

  • @HenryTsang
    @HenryTsang 2 года назад

    Thank you for a great demo. I am new to this so I would like to know if it is possible to do the same two-way access using Azure point-to-site vpn? I was testing using point-to-site and seems like I can only go from on-prem to Azure VNET only? Thanks again.

  • @mahavirsaroj4136
    @mahavirsaroj4136 2 года назад

    On-prem, I can access my Azure VM from the server that hosts RRAS, but I cannot connect from any other server from On-prem to Azure VM

  • @iimanov
    @iimanov 2 года назад

    how about ikev1 connection? i get error 'The template parameter 'connectionMode' is not found' when try to create ikev1.

  • @zafarullah9917
    @zafarullah9917 2 года назад

    Dear Sir, I have Setup Everything is fine .when i Open Routing and Remote Access when I click to Dial Connection then the Connection not Establishing why. How to fix Please!

  • @AjayKumar-lm4yr
    @AjayKumar-lm4yr 9 месяцев назад

    Please help, mere pass multiple VNet main multiple resources hai, kya main in sab ko ek hi vpn se access kar sakta hu to kaise?

  • @tambahako628
    @tambahako628 Год назад

    Thank you

  • @jswmbp
    @jswmbp Год назад

    quick question, is creating Public IP in Azure is safe for Azure VM? can hackers hack the system ? any alternative way to use S2S VPN?

  • @jagadeeskumarlenin5517
    @jagadeeskumarlenin5517 2 года назад +1

    Hi bro... thanks for this video.
    I have one doubt my vpn is connected but RDP is not working may i know what is the mistake I done.

    • @binoyjob7257
      @binoyjob7257 2 года назад +2

      Check the firewall rules. Or Switch off the firewall in the destination server and try rdp

  • @nurudeenalaka2351
    @nurudeenalaka2351 2 года назад

    Thanks a million. Nice one

  • @brusslee1814
    @brusslee1814 Год назад

    when you create an ip address like you did at 7:50 don't you need to assign that public ip address somewhere?

    • @alexanderstanev8581
      @alexanderstanev8581 Год назад

      He assigned it in the VPN Gateway, created afterwards. On "IP Address", select "Use existing" and choose the Public IP resource.

  • @BijouBakson
    @BijouBakson 2 года назад

    That was useful. Thank you.

  • @daye1997
    @daye1997 3 года назад

    What is the requirements for the on prem RRAS server? Does it have to be on the DMZ? or using NAT port forwarding?

  • @abdulfattahassad6228
    @abdulfattahassad6228 2 года назад

    is it required to Configure RRAS on local Windows Server?

  • @suhassuvi4868
    @suhassuvi4868 Год назад

    Thank you 🙏🏻

  • @toutouo
    @toutouo 3 года назад

    I failed to connect to vm. Can you tell me what might be the reason?

  • @HumbleGolds
    @HumbleGolds 3 года назад

    Nice. Liked.

  • @keyvan.k
    @keyvan.k 3 года назад

    Awesome, Thanks

  • @amnesia1764
    @amnesia1764 Год назад

    doesn't seem to work for me, it says on both sides its connected but i cant access on premise resources :(
    does anybody have an idea ?😭

  • @AnushaYadav01
    @AnushaYadav01 9 месяцев назад

    couldn't find rras on my local windows Can you tell how to do it

  • @asrn1739
    @asrn1739 2 года назад

    thank you

  • @andrewmclaughlin2679
    @andrewmclaughlin2679 3 года назад

    On-prem, I can access my Azure VM from the server that hosts RRAS, but I cannot connect from any other server in the active directory to the Azure VM. How would you handle this?

    • @dbrooker8918
      @dbrooker8918 3 года назад +2

      On any on-premise Server that is NOT the RRAS Server you need to create a Static route using a command (DOS) prompt in Administrative mode. An example entry would be:
      route ADD 10.0.0.0 MASK 255.255.0.0 192.168.0.24 metric 2 -p
      You also need to do the same on any Azure based Server that needs to communicate back to the on-premise resources: An example:
      route ADD 172.16.0.0 MASK 255.255.0.0 192.168.0.53 metric 2 -p
      Note that you would have to alter the IP addresses to suit your on-premise & Azure setup.
      How to add and delete static routes
      www.howtogeek.com/howto/windows/adding-a-tcpip-route-to-the-windows-routing-table/
      How to add static routes to enable communication across a VPN tunnel:
      backupbits.wordpress.com/2019/03/27/creating-a-site-to-site-vpn-between-your-lab-azure/

    • @andrewmclaughlin2679
      @andrewmclaughlin2679 3 года назад +1

      @@dbrooker8918 thanks. One of the most thorough responses I have received on RUclips.

    • @daye1997
      @daye1997 3 года назад

      What about Azure VM, azure VM can only access the RRAS server, but not any other on-prem servers, should we route add ? If yes which gateway IP should I use?

  • @srikanthmada9462
    @srikanthmada9462 2 года назад

    Too much information and lot of confusion **