how to build a gateway??

Spruniha Mandadi 0 Reputation points
2025-03-10T18:02:36.7133333+00:00

we have 3 different tenants within our azure environment. we need to build a gateway like a thing to all those 3 tenants to pass through that gateway tunnel to on-prem tunnel.

that gateway needs to have a dns, firewall...

more info: we built an express route circuit for this. but wanted to go with vnet peering with us and the other cloud people.

Azure ExpressRoute
Azure ExpressRoute
An Azure service that provides private connections between Azure datacenters and infrastructure, either on premises or in a colocation environment.
430 questions
{count} votes

1 answer

Sort by: Most helpful
  1. G Sree Vidya 825 Reputation points Microsoft External Staff
    2025-03-11T09:18:36.6566667+00:00

    Hello Spruniha Mandadi

    We kindly request you to share your architecture diagram with us for our reference.

    Could you please confirm the connectivity details for the other cloud environments so we can assist you further?

    1. Since you have multiple tenants and wish for all of them to communicate through a centralized gateway to route traffic to on-premises via ExpressRoute and to other clouds, we suggest implementing a Hub VNet.
    2. The Hub VNet will act as the centralized network, containing the ExpressRoute Gateway, VPN Gateway, Azure Firewall (or NVA), and DNS resolution.

    All Spoke VNets (from your tenant as well as the other two tenants) will be peered with this Hub VNet to facilitate communication.

    For more details, you can refer to the following links:

    You can establish Virtual Network Peering across tenants for VNet-to-VNet communication if needed. However, please note that using ExpressRoute for VNet-to-VNet connectivity may introduce latency, as highlighted in the provided link.

    https://learn.microsoft.com/en-gb/azure/virtual-network/create-peering-different-subscriptions?tabs=create-peering-portal#portal

    Additionally, to connect Azure to other clouds (such as AWS or GCP), you will need to set up private network connections like Direct Connect, Interconnect, or VPN for secure and reliable communication.

    Additionally, you can refer this similar thread which might be helpful:

    https://learn.microsoft.com/en-us/answers/questions/1394753/sharing-azure-expressroute-connection-across-multi.

    Following up to see if the above answer was helpful. If this answers your query, do click Accept Answer and Yes for was this answer helpful.


    Please feel free to reach out if you have any further questions. I’m happy to assist you!

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.