<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Azure Pfsense + Application Gateway + vNet Peering]]></title><description><![CDATA[<p dir="auto">I am stumped. Setup Hub and Spoke</p>
<p dir="auto">192.168.1.0/0/24 - Pfsense (Hub)<br />
192.168.2.0/ 26   - Application Gateway (Hub)<br />
172.30.3.0/24    - Webserver (Spoke vNet Peered)</p>
<p dir="auto">vNet Peer Config: Configuration<br />
Configure virtual network access settings<br />
Allow virtual network access from Hub to Spoke<br />
Enabled</p>
<p dir="auto">Pfsense NAT<br />
192.168.1.5 (With PiP) forward to 192.168.2.5 (AG Private Front End IP)</p>
<p dir="auto">Intended traffic flow: pfsense -&gt; app gateway -&gt; webserver</p>
<p dir="auto">Current Route Tables:<br />
Dest. 0.0.0.0/0           Route Internet         Subnet Association: 192.168.1.0/24<br />
Dest. 192.168.1.0/24 Route Virtual Network</p>
<p dir="auto">Why can I not access webserver site on port 80?</p>
<p dir="auto">NSG Allow all on port 80<br />
Pfsense Allow all on port 80<br />
App Gateway Listener on Port 80 to server backend pool private ip 172.30.3.4 (Works with no Pfsense and Route Tables when using AG Public Front End IP)</p>
<p dir="auto">I tried following this reference guide but it doesn't seem to work:<br />
https://docs.microsoft.com/en-us/azure/architecture/example-scenario/gateway/firewall-application-gateway#hub-and-spoke-topology</p>
<p dir="auto">Has anyone else tried creating something similar?</p>
]]></description><link>https://forum.netgate.com/topic/157401/azure-pfsense-application-gateway-vnet-peering</link><generator>RSS for Node</generator><lastBuildDate>Sat, 18 Jul 2026 21:11:47 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/157401.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 05 Oct 2020 17:45:51 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Azure Pfsense + Application Gateway + vNet Peering on Mon, 05 Oct 2020 20:52:12 GMT]]></title><description><![CDATA[<p dir="auto">Turns out global vNet peering on the LB function of Application Gateways is not supported. This is a Azure Application Gateway limitation and not related to Pfsense: https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-troubleshoot-peering-issues. Posting this on 10/5/2020 if anyone else runs into this issue, I hope this helps</p>
]]></description><link>https://forum.netgate.com/post/938785</link><guid isPermaLink="true">https://forum.netgate.com/post/938785</guid><dc:creator><![CDATA[JuniorNetworking]]></dc:creator><pubDate>Mon, 05 Oct 2020 20:52:12 GMT</pubDate></item></channel></rss>