Skip to content

Commit 44795be

Browse files
Merge pull request #307008 from aktsmm/patch-4
Update FAQ on forced tunneling support for firewalls
2 parents 97b9902 + eba3800 commit 44795be

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

articles/firewall/firewall-faq.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -268,7 +268,7 @@ sections:
268268
269269
- question: Is forced tunneling/chaining to a Network Virtual Appliance supported?
270270
answer: |
271-
Forced tunneling is supported when you create a new firewall. You can't configure an existing firewall for forced tunneling. For more information, see [Azure Firewall forced tunneling](forced-tunneling.md).
271+
Forced tunneling is supported when creating a new firewall, and it is also supported for existing firewalls by adding a management NIC for forced tunneling. For more details about new deployments, see [Azure Firewall forced tunneling](forced-tunneling.md). For existing firewalls, see [Azure Firewall Management NIC](management-nic.md).
272272
273273
Azure Firewall must have direct Internet connectivity. If your AzureFirewallSubnet learns a default route to your on-premises network via BGP, you must override this with a 0.0.0.0/0 UDR with the **NextHopType** value set as **Internet** to maintain direct Internet connectivity.
274274

0 commit comments

Comments
 (0)