Need to replace VPN SKU VpnGw2AZ with a Basic VPN to manage costs

Ron Yount 20 Reputation points
2024-10-09T18:35:49.35+00:00

I am new to Azure and work for a non-profit organization. They cannot afford the charges for the VPNGw2Az which I stood up. I need to quickly replace it with a Basic VPN. The current Azure infrastructure is simply a VM running server 2022 as their primary domain controller. I have three questions 1) What is the best method to replace the current VPN Gateway? 2) Should the fact that the Basic VPN gateway only allows Dynamic (not Static) Public IP address be a concern? The client currently runs on a small, private lan onsite, and the move to azure was initiated by standing up the server and vpn gateway. 3) I see mention that Basic VPN gateway Public IP are EOL effective September 2025 - what does this mean?

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,543 questions
0 comments No comments
{count} votes

Accepted answer
  1. TP 96,331 Reputation points
    2024-10-09T18:58:23.8+00:00

    Hi Ron,

    Q1: What is the best method to replace the current VPN Gateway?

    A: You can't scale down the existing VPN gateway to Basic, so you will need to delete it and then create new Basic SKU gateway. This will involve some downtime since it takes time to delete existing gateway, create new gateway, re-configure your on premises VPN, etc.


    Q2: Should the fact that the Basic VPN gateway only allows Dynamic (not Static) Public IP address be a concern?

    A: No. The public IP will stay the same until you delete the gateway. Excerpt from VPN Gateway FAQ:

    ... When you use a dynamic IP address, the IP address doesn't change after it's assigned to your VPN gateway. The only time that the VPN gateway IP address changes is when the gateway is deleted and then re-created. The public IP address doesn't change when you resize, reset, or complete other internal maintenance and upgrades of your VPN gateway.


    Q3: I see mention that Basic VPN gateway Public IP are EOL effective September 2025 - what does this mean?

    A: Basic SKU Public IP address is ending September 2025, so you will need to switch the VPN Gateway to Standard SKU before then. They will announce instructions on how to switch to Standard SKU Public IP as soon as the ability to do so is ready.

    https://zcusa.951200.xyz/en-us/azure/vpn-gateway/vpn-gateway-vpn-faq#how-does-the-retirement-of-basic-sku-public-ip-addresses-affect-my-vpn-gateways

    Please click Accept Answer and upvote if the above was helpful.

    Thanks.

    -TP

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.