Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.
To address your query, "If we configured site to site vpn no need to use Virtual Machine public ip for accessing the virtual machine right ?? , Instead of that we can Virtual Machine private ip right?"
- Yes
- This is correct
Since you mentioned you are able to ping and access OnPrem servers, this is not a Routing issue.
- Can you please check with your OnPrem Networking team if there are any firewalls blocking the outbound connectivity towards the S2S?
- From Azure side, make sure no NSG is blocking inbound access to your VM
- You can test this using NSG Diagnostics or IP Flow verify
- And share the results
Cheers,
Kapil