No-Look VPN Configuration with Azure Pack :D
After very long search on Google find only the Azure VPN configuration but there is no example and good explanation about how you can do it with Azure Pack.
DorukNET is COSN provider and we are preparing to offer Azure Pack in Turkey and want to clarify VPN configuration with our Fortigate expert Salih 😛
Before start let me explain ISP point of view VPN properties ;
- First you ask peer ip address
- Second you ask phase 1 config properties like IKE version , encryption , key life time and key
- Third you ask phase 2 config properties , encryption , key life time , network remote and local one which you will encrypt
- Also talk about other things dead peer detection (DPD)
- Policy service consideration also important , mostly we do not allow any to any communication
When you login as a customer to WAP Service Management Portal, you couldn’t see every properties you need to establish VPN , mostly things are preconfigured and customer point of view there is no way to see it. Also its little hard to discover by administrator point of view but at the end we succeeded .
This article is about establish VPN between Fortinet and Microsoft NVGRE GW
NVGRE GW Peer IP Address : xxx.yyy.zzz.50
Customer Peer IP Address :Note that WAP site NVGRE GW Peer ip is not available before you create a new site-to-site setup
Important note, WAP GUI do not allow enter single ip address as a remote
You can see that Microsoft configure each pre-shared key as an Run-As-Account
From WAP GUI there is no way to set certificate as a auth method , actually i do not need it , no need to push Microsoft here 😀
Easy part , go to Forti , which traditionally we know everything how to configure 😀
Posted on 09/06/2014, in NVGRE GW, Uncategorized, VPN and tagged Azure Pack Configure a Site-to-Site VPN in the Management Portal, Configure a Site-to-Site VPN in the Management Portal, Configure a Site-to-Site VPN in the Management Portal Azure Pack, Connect an On-premises Network to Azure Pack via Site to Site VPN, NVGRE, NVGRE GW. Bookmark the permalink. Leave a comment.