How to set up Bastion to access VMs on different VNets?

Prashanta Shrestha 51 Reputation points
2024-10-02T18:20:10.9966667+00:00

Hello All,

In this scenario shown below,

User's image

  • Bastion instance is deployed in VNET-1.
  • VNET-1 and VNET-2 have their own respective Site-to-Site (S2S) VPN connections to their on-premises environments.
  • The objective is to use the Bastion instance in VNET-1 to RDP into VM-2 and VM-3, which reside in separate VNETs (VNET-2 and VNET-3).

Establishing VNET peering between VNET-1 and VNET-2/VNET-3 is not an option because VNET-2 and VNET-3 already have VNET Gateways in use for their respective S2S VPN connections.

One possible solution is to set up S2S VPN connections between VNET-1 and both VNET-2 and VNET-3.

Is there any other approach to achieve this objective?

Azure Bastion
Azure Bastion
An Azure service that provides private and fully managed Remote Desktop Protocol (RDP) and Secure Shell (SSH) access to virtual machines.
263 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Andreas Baumgarten 110.4K Reputation points MVP
    2024-10-02T19:00:01.4933333+00:00

    Hi @Prashanta Shrestha ,

    in your scenario additional S2S VON connections between VNET1/VNET2 and VNET1/VNET3 looks like the best/easiest solution.


    (If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)

    Regards

    Andreas Baumgarten

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.