Skip to content

Commit eba3800

Browse files
authored
Update FAQ on forced tunneling support for firewalls
Clarified support for forced tunneling in Azure Firewall, including details for existing firewalls and management NICs.
1 parent 59bbc44 commit eba3800

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

articles/firewall/firewall-faq.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -268,7 +268,7 @@ sections:
268268
269269
- question: Is forced tunneling/chaining to a Network Virtual Appliance supported?
270270
answer: |
271-
Forced tunneling is supported when you create a new firewall. You can't configure an existing firewall for forced tunneling. For more information, see [Azure Firewall forced tunneling](forced-tunneling.md).
271+
Forced tunneling is supported when creating a new firewall, and it is also supported for existing firewalls by adding a management NIC for forced tunneling. For more details about new deployments, see [Azure Firewall forced tunneling](forced-tunneling.md). For existing firewalls, see [Azure Firewall Management NIC](management-nic.md).
272272
273273
Azure Firewall must have direct Internet connectivity. If your AzureFirewallSubnet learns a default route to your on-premises network via BGP, you must override this with a 0.0.0.0/0 UDR with the **NextHopType** value set as **Internet** to maintain direct Internet connectivity.
274274

0 commit comments

Comments
 (0)