How to setup Site to Site (S2S) VPN from local OnPrem to Azure Cloud in 10 steps

Sdílet
Vložit
  • čas přidán 25. 08. 2024

Komentáře • 103

  • @biksuni
    @biksuni Před 13 dny

    Watched in 2024. So, precise tutorial. No bullshit and unwanted explanation. Subscribed to your channel. Thanks.

  • @hjorkera
    @hjorkera Před rokem +22

    Watching in 2023. The Azure portal has changed a bit, but the information it's still relevant.
    Great tutorial perfectly explained, one of the best I have seen.
    Thanks!

  • @farookhshaikh
    @farookhshaikh Před 3 lety +27

    Thank you for the Video, descriptive and up to date
    1. Create Resource Group
    2. Create Virtual network
    3. Create Local Network gateway
    4. Create Public Ip Address
    5. Create Virtual Network gateway
    6. Create Connection
    7. Create VM for testing Azure
    8. Configure RRAS on local Windows server
    9. Add Static route in RRAS
    10. Test with RDP to a VM in Azure

  • @chichilam4907
    @chichilam4907 Před 3 lety +5

    this is the most clear explanation i can see so far. Good Job mate!

  • @sanji5501
    @sanji5501 Před 5 měsíci +1

    good video, watched and followed in 2024 March, all steps are same except for few subnet requirements which is a simple modification. thanks :)

  • @JK-ex2eo
    @JK-ex2eo Před 3 měsíci +1

    Works very well... some options has changed but it's still very relevant. Thanks alot.

  • @ivotebid1991
    @ivotebid1991 Před 29 dny

    Very direct and simple teaching. Thank you

  • @Jiggs224u
    @Jiggs224u Před rokem

    Many thanks! Helped me setup a site to site with my router itself without having to setup RRAS!

  • @kenmurphy4259
    @kenmurphy4259 Před 2 lety

    Lovely speaker, excellent demo, clear and concise

  • @iamaguest2
    @iamaguest2 Před 11 měsíci

    i love the way you present:
    very clear about the steps.

  • @satheeshkumaraswamy
    @satheeshkumaraswamy Před rokem

    I have been trying to get details explanation like this. Indeed it happened now. Thank you so much.

  • @oscarurbina9332
    @oscarurbina9332 Před rokem

    Very clear step-by-step tutorial. This is best that I have seen/found about azure tutorials. Excellent job!!!

  • @tavir0411
    @tavir0411 Před rokem +2

    Good video ..it would be better if you could add steps to connect to vpn from windows 10 machine as most of the time you wish to add vpn from home and most of home users use windows10

  • @toptalkers7980
    @toptalkers7980 Před 3 měsíci

    Thanks for making this concept so simple.

  • @MohammadSameerA
    @MohammadSameerA Před 3 lety +2

    very informative and simple. a million thanks wouldn't be enough man!!!

  • @jeffwads
    @jeffwads Před 3 lety

    We use a Sonicwall, but this method is a great alternative and cheaper to boot. Nice work.

  • @leoleo9771
    @leoleo9771 Před 3 lety

    Easy to undestand. very well explained. thank you sir

  • @nareshreddy7473
    @nareshreddy7473 Před 2 lety

    Your explanation is really good. Would request you to share further videos ( Azure ).

  • @tariqahmed2710
    @tariqahmed2710 Před rokem

    Thanks , nice explanation, i able to do each step clearly and establish connection between on prem and Azure , thanks alot :D

  • @uYahbonaEmbo
    @uYahbonaEmbo Před 2 lety

    Awesome stuff i have my work cut out just on these two videos , two day project lets get it on.

  • @Shravan_Reddy
    @Shravan_Reddy Před rokem

    Very very nice explanation. You are awesome!!

  • @tejendergoud254
    @tejendergoud254 Před rokem

    very quick and easy to understand thanks for the video

  • @martinsagan
    @martinsagan Před 7 měsíci +1

    Perfect video tutorial. Why you used Dynamic public IP instead Static public IP? And why you didn't use "Basic" SKU for Virtual Network gateway? It's more cheaper and sufficient for one connection.
    Thanks.

    • @prabeshm8056
      @prabeshm8056 Před 5 měsíci

      Yes even i could not find basic VPN Sku in Console and could not find any documentation to create it via powershell.

  • @kumards4527
    @kumards4527 Před 5 měsíci

    Very clear explanation, Thank You

  • @sarathfromsaudi
    @sarathfromsaudi Před rokem

    Thank you so much for this video. Clear explanation and to the point. Appreciate it

  • @VivekSingh-cq5rt
    @VivekSingh-cq5rt Před 3 lety +1

    easy to understand video on Azure site to site VPN

  • @srikanthgiddey3928
    @srikanthgiddey3928 Před 11 měsíci

    Thank you very much for the video. It is very much useful. I really appreciate your efforts to put out this video

  • @marceldutoit9393
    @marceldutoit9393 Před rokem

    Super cool video, please continue creating these vids

  • @royalblue5367
    @royalblue5367 Před 2 lety

    Thank you so much! Very clearly explained in perfect detail

  • @FernandoLopez-el8mp
    @FernandoLopez-el8mp Před rokem

    A really great tutorial, thank you!
    PS: "Indivisa manent" 😉

  • @mohamaddanfarhan
    @mohamaddanfarhan Před 5 měsíci

    Great and easy wat to establish the Azure Site to Site VPN

  • @funwithvanshika4405
    @funwithvanshika4405 Před 3 lety

    Very Very good Video and i'm planning try my self

  • @user-cd8ml1ru6t
    @user-cd8ml1ru6t Před 6 měsíci

    Great content and very helpful, thank you.

  • @jordanjones6131
    @jordanjones6131 Před 7 měsíci

    You are the man thank you!

  • @moizkamran6081
    @moizkamran6081 Před 3 lety

    Amazing Video. Very clear and concise. Thank You @ConsulCat

  • @qkhader81
    @qkhader81 Před rokem

    Many thanks for the great tutorial.

  • @RicardoDiaz21129
    @RicardoDiaz21129 Před 3 lety

    Great video. Clear and to the point.

  • @bhavikdesai1988
    @bhavikdesai1988 Před 2 lety

    best explanation!! thanks for the great video

  • @abhik2702
    @abhik2702 Před 4 měsíci

    Wonderful

  • @ranadheerreddy2996
    @ranadheerreddy2996 Před 2 lety

    Thanks for this amazing explaination.

  • @concept-seven
    @concept-seven Před měsícem

    Great video thanks. When you create the /26 and /28 subnets on the /24 network, does that mean that all traffic on any of these subnets can freeley get to the other subnets?

  • @devgela
    @devgela Před 3 lety

    Thanks, I can create the tunnel reference with you video

  • @PrayagSanjay
    @PrayagSanjay Před 3 lety

    Thanks for such a nice explanation.

  • @gigmix1958
    @gigmix1958 Před rokem

    Great clear video thanks, one thing I don't understand is why does there need to be a default subnet?

  • @howardworleyiii5764
    @howardworleyiii5764 Před rokem

    Great video, very well done.

  • @andrewmclaughlin2679
    @andrewmclaughlin2679 Před 3 lety +1

    Amazing tutorial!

  • @TheAqub
    @TheAqub Před rokem

    Thank You. Great explanation but I have one doubt. How to set up traffic forwarding on an on-premise gateway VM / device in such a way that when receiving traffic from Azure intended for a different on-premise VM other then the gateway VM

  • @thejusv.s672
    @thejusv.s672 Před 3 lety

    Thank you sir.. Well explained

  • @prasanth01893
    @prasanth01893 Před 3 lety

    Very Good and thanks for you help..

  • @myolds_1david952
    @myolds_1david952 Před 2 lety

    This is one of the best explainer videos I've ever seen. Do you have a video on Azure DNS Private Resolver? I like to Resolver Azure VM from on-prem and vice versa. Thank you very much

  • @nealpan
    @nealpan Před 10 měsíci

    Great, thanks!

  • @souravroy3124
    @souravroy3124 Před 2 lety +1

    @ConsulCat
    Can we connect Azure Linux or other VMs on the same VNET from the On-Premises Windows server after doing the steps you have demonstrated or we need to perform any other steps?

  • @binoyjob7257
    @binoyjob7257 Před 2 lety

    Well Explained .

  • @funwithvanshika4405
    @funwithvanshika4405 Před 3 lety +1

    You shared share onprem drive to Azure VM, Is it possible Can i map azure VM drive to OnPrem ?

  • @icoingrowth
    @icoingrowth Před rokem

    Nice but for you connected a AD in equal subnet RRAS, do you think necessary additional anything in route RRAS? that’s Brazil

  • @nurudeenalaka2351
    @nurudeenalaka2351 Před 2 lety

    Thanks a million. Nice one

  • @tambahako628
    @tambahako628 Před rokem

    Thank you

  • @BijouBakson
    @BijouBakson Před 2 lety

    That was useful. Thank you.

  • @knownisdropunknownisocean.9282

    great

  • @miravida9778
    @miravida9778 Před 5 měsíci

    I ran into an issues. I wasn't able to rdp with the internal IP but I was able to ping just from the OnPrem Server. Any server/windows from onPrem not able to ping the az-vm. Where should I start troubleshoot?

  • @JOUDALAKAY
    @JOUDALAKAY Před 2 lety

    This is a great video. However, I would like to know if client vpn is not necessary instead of using remote desktop connection ?

  • @tedmolavi8764
    @tedmolavi8764 Před 3 lety +2

    Great video explaining a Site-to-Site VPN with Azure. One note though, I noticed in your RRAS setup, you were using 255.255.0.0 for your 10.0.0.0/24 Azure subnet, any idea why?

    • @ayyappahemanth7134
      @ayyappahemanth7134 Před 3 lety +1

      255.255.0.0 is called network mask. please Google yourself about CIDR and Network Mask. You will get it 🙂

    • @sysarchitect3232
      @sysarchitect3232 Před 3 lety +3

      @ConsulCat Same question, 10.0.0.0/24 having C class and subnet suppose to be 255.255.255.0 ?

    • @akhan3682
      @akhan3682 Před 2 lety

      @@sysarchitect3232 it can be whatever you want to allocate

  • @oliveroctoso9900
    @oliveroctoso9900 Před rokem

    Great Video! this same process when creating a resource for ASHUB? this is kind of guide im looking very detailed. Thank you Sir!

  • @HenryTsang
    @HenryTsang Před 2 lety

    Thank you for a great demo. I am new to this so I would like to know if it is possible to do the same two-way access using Azure point-to-site vpn? I was testing using point-to-site and seems like I can only go from on-prem to Azure VNET only? Thanks again.

  • @ayushsakalley9223
    @ayushsakalley9223 Před 10 měsíci

    If I have on premises server of ubuntu, then in this case what need to be done

  • @balajiborra
    @balajiborra Před 8 měsíci

    I used this process ,connection is up both sides,but while lambda function trying to connect with azure private flexible postgres server private dns it couldn't resolve private dns, while trying with private ip it getting login rejected, do know how to resolve it ?

  • @merameshmarka
    @merameshmarka Před 3 lety

    your explanation is really good, simply super. one question is in real time, in general, do we use on-prem image copy? do we use Router/ NAT to connect to on-prem VM's?

  • @suhassuvi4868
    @suhassuvi4868 Před rokem

    Thank you 🙏🏻

  • @azelaz5053
    @azelaz5053 Před 3 lety +1

    Could you please explain why you've set the gateway subnet to 10.0.0.96/28?

    • @francismori7
      @francismori7 Před 2 lety

      Arbitrary, you can use any LAN subnet you wish.

  • @wajidfsd
    @wajidfsd Před 3 lety +1

    ON perm server is there public ip assigned or port forward used and if use port forwarding which ports are needed.

    • @dbrooker8918
      @dbrooker8918 Před 3 lety +1

      On the on-premise router you would have to port forward ports 500 & 4500 to the IP address of the RRAS Servers "External" facing interface.
      Note: Normally, a RRAS Server has 2 interfaces (nics). One is "Internal" i.e. facing the Servers on the Hyper-V host and one "External" facing the rest of the on-premise devices. However, whilst having 2 NIC's is good design and practice its not compulsory.
      directaccess.richardhicks.com/tag/dual-nic/

  • @vjzp9354
    @vjzp9354 Před 2 lety

    how to setup cryptos for phase1 and 2? when the IPSec tunnel is up, how to configure tunnel IP address on both ends?

  • @udbalatester49
    @udbalatester49 Před rokem

    Can we use one virtual network gateway to connect to both AWS and on-prem?

  • @AjayKumar-lm4yr
    @AjayKumar-lm4yr Před 9 měsíci

    Please help, mere pass multiple VNet main multiple resources hai, kya main in sab ko ek hi vpn se access kar sakta hu to kaise?

  • @keyvan.k
    @keyvan.k Před 3 lety

    Awesome, Thanks

  • @jswmbp
    @jswmbp Před rokem

    quick question, is creating Public IP in Azure is safe for Azure VM? can hackers hack the system ? any alternative way to use S2S VPN?

  • @HumbleGolds
    @HumbleGolds Před 3 lety

    Nice. Liked.

  • @brusslee1814
    @brusslee1814 Před rokem

    when you create an ip address like you did at 7:50 don't you need to assign that public ip address somewhere?

    • @alexanderstanev8581
      @alexanderstanev8581 Před rokem

      He assigned it in the VPN Gateway, created afterwards. On "IP Address", select "Use existing" and choose the Public IP resource.

  • @daye1997
    @daye1997 Před 3 lety

    What is the requirements for the on prem RRAS server? Does it have to be on the DMZ? or using NAT port forwarding?

  • @mahavirsaroj4136
    @mahavirsaroj4136 Před 2 lety

    On-prem, I can access my Azure VM from the server that hosts RRAS, but I cannot connect from any other server from On-prem to Azure VM

  • @iimanov
    @iimanov Před 2 lety

    how about ikev1 connection? i get error 'The template parameter 'connectionMode' is not found' when try to create ikev1.

  • @zafarullah9917
    @zafarullah9917 Před 2 lety

    Dear Sir, I have Setup Everything is fine .when i Open Routing and Remote Access when I click to Dial Connection then the Connection not Establishing why. How to fix Please!

  • @asrn1739
    @asrn1739 Před 2 lety

    thank you

  • @abdulfattahassad6228
    @abdulfattahassad6228 Před 2 lety

    is it required to Configure RRAS on local Windows Server?

  • @jagadeeskumarlenin5517
    @jagadeeskumarlenin5517 Před 2 lety +1

    Hi bro... thanks for this video.
    I have one doubt my vpn is connected but RDP is not working may i know what is the mistake I done.

    • @binoyjob7257
      @binoyjob7257 Před 2 lety +2

      Check the firewall rules. Or Switch off the firewall in the destination server and try rdp

  • @toutouo
    @toutouo Před 3 lety

    I failed to connect to vm. Can you tell me what might be the reason?

  • @AnushaYadav01
    @AnushaYadav01 Před 9 měsíci

    couldn't find rras on my local windows Can you tell how to do it

  • @amnesia1764
    @amnesia1764 Před rokem

    doesn't seem to work for me, it says on both sides its connected but i cant access on premise resources :(
    does anybody have an idea ?😭

  • @andrewmclaughlin2679
    @andrewmclaughlin2679 Před 3 lety

    On-prem, I can access my Azure VM from the server that hosts RRAS, but I cannot connect from any other server in the active directory to the Azure VM. How would you handle this?

    • @dbrooker8918
      @dbrooker8918 Před 3 lety +2

      On any on-premise Server that is NOT the RRAS Server you need to create a Static route using a command (DOS) prompt in Administrative mode. An example entry would be:
      route ADD 10.0.0.0 MASK 255.255.0.0 192.168.0.24 metric 2 -p
      You also need to do the same on any Azure based Server that needs to communicate back to the on-premise resources: An example:
      route ADD 172.16.0.0 MASK 255.255.0.0 192.168.0.53 metric 2 -p
      Note that you would have to alter the IP addresses to suit your on-premise & Azure setup.
      How to add and delete static routes
      www.howtogeek.com/howto/windows/adding-a-tcpip-route-to-the-windows-routing-table/
      How to add static routes to enable communication across a VPN tunnel:
      backupbits.wordpress.com/2019/03/27/creating-a-site-to-site-vpn-between-your-lab-azure/

    • @andrewmclaughlin2679
      @andrewmclaughlin2679 Před 3 lety +1

      @@dbrooker8918 thanks. One of the most thorough responses I have received on CZcams.

    • @daye1997
      @daye1997 Před 3 lety

      What about Azure VM, azure VM can only access the RRAS server, but not any other on-prem servers, should we route add ? If yes which gateway IP should I use?

  • @srikanthmada9462
    @srikanthmada9462 Před 2 lety

    Too much information and lot of confusion **