

{"id":108154,"date":"2022-03-23T09:00:43","date_gmt":"2022-03-23T03:30:43","guid":{"rendered":"https:\/\/data-flair.training\/blogs\/?p=108154"},"modified":"2022-03-23T10:23:18","modified_gmt":"2022-03-23T04:53:18","slug":"azure-point-to-site-vpn","status":"publish","type":"post","link":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/","title":{"rendered":"Azure Point to Site VPN"},"content":{"rendered":"<p>In this article, we will gain knowledge about Point to Site VPN in Azure. But we will mostly focus on the practical demonstration. So, let us begin.<\/p>\n<h3>What is Point-to-Site Connectivity in Azure?<\/h3>\n<p>The most common method for connecting an on-premises network to an Azure VNet is through a Site-to-Site VPN. This VPN connection is established at the level of your edge firewall or router.<\/p>\n<p>What if you connect from a distant location, such as your home? To do so, we can use the point-to-site method. The authentication between the endpoint and the Azure virtual network will be done using certificates in this method.<\/p>\n<h3>Azure Point to Site Connectivity Protocols<\/h3>\n<p><strong>1. The OpenVPN\u00ae Protocol<\/strong> is a VPN protocol that is based on SSL\/TLS. Because most firewalls open TCP port 443 outbound, which TLS uses, a TLS VPN solution can pass through them. Android, iOS (versions 11.0 and up), Windows, Linux, and Mac devices can all connect to OpenVPN (macOS versions 10.13 and above).<\/p>\n<p><strong>2. Secure Socket Tunneling Protocol (SSTP<\/strong>) is a TLS-based VPN protocol that is proprietary. Because most firewalls open TCP port 443 outbound, which TLS uses, a TLS VPN solution can pass through them. Only Windows devices are compatible with SSTP. All versions of Windows with SSTP and TLS 1.2 support are supported by Azure (Windows 8.1 and later).<\/p>\n<p><strong>3. IKEv2 VPN<\/strong> is an IPsec VPN solution based on standards. From a Mac device, you can connect to an IKEv2 VPN (macOS versions 10.11 and above).<\/p>\n<h3>How to create VNet in Azure?<\/h3>\n<p>Follow below steps to create VNet in Azure:<\/p>\n<p><strong>1:<\/strong> Firstly, you must sign into the Azure portal and then search for Virtual Network.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/searching-virtual-network.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108272\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/searching-virtual-network.webp\" alt=\"searching virtual network\" width=\"1234\" height=\"655\" \/><\/a><\/p>\n<p><strong>2:<\/strong> Secondly, choose Virtual Network from Azure MarketPlace and then click on the create button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/choosing-virtual-network.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108273\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/choosing-virtual-network.webp\" alt=\"choosing virtual network\" width=\"898\" height=\"266\" \/><\/a><\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/virtual-network.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108274\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/virtual-network.webp\" alt=\"virtual network\" width=\"480\" height=\"289\" \/><\/a><\/p>\n<p><strong>3:<\/strong> The Create virtual network page will appear after you select Create. Now, configure the Project details and Instance details VNet settings on the Basics tab.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/basic-information.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108275\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/basic-information.webp\" alt=\"basic information\" width=\"795\" height=\"528\" \/><\/a><\/p>\n<p><strong>4:<\/strong> In the IP provide the IPv4 address range and subnet.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/networking-information.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108276\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/networking-information.webp\" alt=\"networking information\" width=\"767\" height=\"505\" \/><\/a><\/p>\n<p><strong>5:<\/strong> In the security tab leave it as default.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/security-details-1.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108277\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/security-details-1.webp\" alt=\"security details\" width=\"452\" height=\"436\" \/><\/a><\/p>\n<p><strong>6:<\/strong> Provide appropriate tags<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-tags-2.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108278\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-tags-2.webp\" alt=\"providing tags\" width=\"797\" height=\"529\" \/><\/a><\/p>\n<p><strong>7:<\/strong> Once last review all the settings and then hit on the create button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/validation-checks.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108279\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/validation-checks.webp\" alt=\"validation checks\" width=\"451\" height=\"456\" \/><\/a><\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/virtual-network-deployed.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108280\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/virtual-network-deployed.webp\" alt=\"virtual network deployed\" width=\"1032\" height=\"551\" \/><\/a><\/p>\n<h3>Creating Azure VPN Gateway<\/h3>\n<p>A VPN gateway is a type of virtual network gateway that sends encrypted traffic over the public Internet between an Azure virtual network and an on-premises location. There can only be one VPN gateway in every virtual network.<\/p>\n<p>A subnet known as the gateway subnet is used by the virtual network gateway. The virtual network IP address range you specify when configuring your virtual network includes the gateway subnet. It contains the IP addresses for the resources and services of the virtual network gateway.<\/p>\n<p>Follow the below steps to create VPN Gateway in Azure:<\/p>\n<p><strong>1:<\/strong> Firstly, search for Virtual Networks Gateway in the search box and then choose it from Azure MarketPlace. And, then hit on the create button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/searching-virtual-network-gateway.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108281\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/searching-virtual-network-gateway.webp\" alt=\"searching virtual network gateway\" width=\"1236\" height=\"652\" \/><\/a><\/p>\n<p><strong>2:<\/strong> In the basics section one must fill all the values.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/project-details-and-instance-details.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108282\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/project-details-and-instance-details.webp\" alt=\"project details and instance details\" width=\"885\" height=\"516\" \/><\/a><\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/networking-information-1.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108283\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/networking-information-1.webp\" alt=\"networking information\" width=\"818\" height=\"457\" \/><\/a><\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/public-ip-address.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108284\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/public-ip-address.webp\" alt=\"public ip address\" width=\"832\" height=\"354\" \/><\/a><\/p>\n<p><strong>3:<\/strong> In the tags provide appropriate tags that you can remember<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-tags-3.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108285\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-tags-3.webp\" alt=\"providing tags\" width=\"785\" height=\"517\" \/><\/a><\/p>\n<p><strong>4:<\/strong> Review all the details and once the validation is passed click on the create button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/validation-checking.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108286\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/validation-checking.webp\" alt=\"validation checking\" width=\"511\" height=\"449\" \/><\/a><\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/deployment-successfull.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108287\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/deployment-successfull.webp\" alt=\"deployment successfull\" width=\"798\" height=\"465\" \/><\/a><\/p>\n<p><strong>Note:<\/strong> Users should make a note that the deployment of the virtual network gateway might take up to 45 minutes of duration to complete.<\/p>\n<h3>Generating Certificates in Azure<\/h3>\n<p>Clients connecting to a VNet via a Point-to-Site VPN connection are authenticated using certificates in Azure.<\/p>\n<p>You upload the public key information to Azure after you obtain a root certificate. Azure then considers the root certificate to be &#8216;trusted,&#8217; allowing P2S to connect to the virtual network.<\/p>\n<p>Client certificates will also be generated from the trusted root certificate and installed on each client computer.<\/p>\n<p>When a client initiates a connection to the VNet, the client certificate is used to authenticate the client.<\/p>\n<p>Generate a self-signed certificate or use a root certificate generated with an enterprise solution (recommended). Export the public certificate data (not the private key) as a Base64 encoded X.509.cer file after creating the root certificate. Then, on the Azure server, upload the public certificate data.<\/p>\n<p>Run the following script in PowerShell as an administrator.<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">$cert = New-SelfSignedCertificate -Type Custom -KeySpec Signature `\r\n-Subject \u201cCN=SLP2SRootCert\u201d -KeyExportPolicy Exportable `\r\n-HashAlgorithm sha256 -KeyLength 2048 `\r\n-CertStoreLocation \u201cCert:\\CurrentUser\\My\u201d -KeyUsageProperty Sign -KeyUsage CertSign\r\n<\/pre>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generating-certificate-for-client.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108288\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generating-certificate-for-client.webp\" alt=\"generating certificate for client\" width=\"713\" height=\"364\" \/><\/a><\/p>\n<p>It will create a root cert and install it under the current user cert store.<\/p>\n<h3>Generate Client Certificates from Root Certificate in Azure<\/h3>\n<p>Now, in the Powershell run the following command:<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">Get-ChildItem -Path \u201cCert:\\CurrentUser\\My\u201d<\/pre>\n<p>The following should provide a thumbprint:<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-thumbprint.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108289\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/providing-thumbprint.webp\" alt=\"providing thumbprint\" width=\"672\" height=\"358\" \/><\/a><\/p>\n<p>Now, run the following command. But, make sure the thumbprint should match your Certificate.<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">$cert = Get-ChildItem -Path \u201cCert:\\CurrentUser\\My\\ 0FD6775DA36A288CC91EAC1702167112765B8F05\r\n<\/pre>\n<p>Lastly, enter the following command to generate client certificate<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">New-SelfSignedCertificate -Type Custom -KeySpec Signature `\r\n-Subject \u201cCN=SLP2SClientCert\u201d -KeyExportPolicy Exportable -NotAfter (Get-Date).AddYears(1) `\r\n-HashAlgorithm sha256 -KeyLength 2048 `\r\n-CertStoreLocation \u201cCert:\\CurrentUser\\My\u201d `\r\n-Signer $cert -TextExtension @(\u201c2.5.29.37={text}1.3.6.1.5.5.7.3.2\u201d)\r\n<\/pre>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generating-client-certificate.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108290\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generating-client-certificate.webp\" alt=\"generating client certificate\" width=\"721\" height=\"208\" \/><\/a><\/p>\n<p>We now have certificates in place, but we need to export the root certificate so that it can be uploaded to Azure.<\/p>\n<p>To begin, export the public key for the root certificate (.cer)<\/p>\n<p>To open the Run dialogue box, press Windows Key + &#8220;R&#8221; and type &#8220;certmgr.msc.&#8221; Your newly created certificate should appear in &#8220;Current UserPersonalCertificates&#8221; when the management console opens. Go to All Tasks &gt; Export by right-clicking on your newly created certificate.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/exporting-certificate.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108291\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/exporting-certificate.webp\" alt=\"exporting certificate\" width=\"1366\" height=\"726\" \/><\/a><\/p>\n<p>Now click on the Next option in the wizard.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/export-wizard.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108292\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/export-wizard.webp\" alt=\"export wizard\" width=\"533\" height=\"519\" \/><\/a><\/p>\n<p>Choose \u201cNo, do not export the private key\u201d and then click on the Next button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/exporting-private-key.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108293\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/exporting-private-key.webp\" alt=\"exporting private key\" width=\"532\" height=\"518\" \/><\/a><\/p>\n<p>On the Export File Format page, choose Base-64 encoded X.509 (.CER)., and then click on the Next button.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/choosing-export-file-format.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108294\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/choosing-export-file-format.webp\" alt=\"choosing export file format\" width=\"531\" height=\"520\" \/><\/a><\/p>\n<p>For File to Export, Browse and select a location to where you want to export the certificate then provide a file name. And, click Next.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/specifying-the-location.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108295\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/specifying-the-location.webp\" alt=\"specifying the location\" width=\"530\" height=\"522\" \/><\/a><\/p>\n<p>Finally, click on the finish button and you will see the certificate on the saved location.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generated-certificate.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108296\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/generated-certificate.webp\" alt=\"generated certificate\" width=\"306\" height=\"344\" \/><\/a><\/p>\n<h3>Configuring Point to Site Connection in Azure<\/h3>\n<p>The point-to-site connection will be configured next in this configuration. We&#8217;ll also define the pool of client IP addresses here. It&#8217;s for VPN clients.<\/p>\n<p>1. Select the newly created VPN gateway connection by clicking on it.<\/p>\n<p>2. Then click Point-to-Site Configuration in a new window.<\/p>\n<p>3. Select Configure Now.<\/p>\n<p>4. Type the VPN address pool&#8217;s IP address range in a new window. 20.20.20.0\/24 will be used. Use both SSTP and IKEv2 for tunnelling. By default, IKEv2 is used to connect Linux and other mobile clients. In Windows, IKEv2 is used first, followed by SSTP. Use Azure Certificates for authentication.<\/p>\n<p>5. There is a place to define a root certificate in the same window. Type the cert name in the root certificate name field, and paste the root certificate data in the public certificate data field ( you can open cert in notepad to get data).<\/p>\n<p>6. Then, to finish the process, click Save.<\/p>\n<p><strong>Note<\/strong>: Do not copy the text \u2014\u2013BEGIN CERTIFICATE\u2014\u2013 and \u2014\u2013END CERTIFICATE\u2014\u2013 when pasting certificate data.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/point-to-site-configuration.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108297\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/point-to-site-configuration.webp\" alt=\"point to site configuration\" width=\"1094\" height=\"525\" \/><\/a><\/p>\n<h3>Testing VPN Connection<\/h3>\n<p>From the machine, go to the VPN gateway configuration page in the Azure portal and follow below steps:<\/p>\n<p><strong>1:<\/strong> Select Point-to-Site Configuration from the drop-down menu.<\/p>\n<p><strong>2:<\/strong> Then, select Download VPN Client from the drop-down menu.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/point-to-site-configuring-details.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108299\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/point-to-site-configuring-details.webp\" alt=\"point to site configuring details\" width=\"1138\" height=\"502\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p><strong>3:<\/strong> After downloading, extract or unzip the file and then double click on the VPN client setup.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/downloading-vpn-client.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108298\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/downloading-vpn-client.webp\" alt=\"downloading vpn client\" width=\"775\" height=\"472\" \/><\/a><\/p>\n<p><strong>4:<\/strong> Just allow the installation and after that, you will see a new connection under the windows 10 VPN page.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/installing-vpn-client.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108300\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/installing-vpn-client.webp\" alt=\"installing vpn client\" width=\"715\" height=\"646\" \/><\/a><\/p>\n<p><strong>5:<\/strong> Now, click on connect option in VPN.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/connecting-client-vpn.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108301\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/connecting-client-vpn.webp\" alt=\"connecting client vpn\" width=\"646\" height=\"583\" \/><\/a><\/p>\n<p><strong>6:<\/strong> Now, a new window will appear on the screen and click on the Connect option.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/checking-connection-status-and-connecting.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108302\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/checking-connection-status-and-connecting.webp\" alt=\"checking connection status and connecting\" width=\"343\" height=\"362\" \/><\/a><\/p>\n<p><strong>7:<\/strong> In the last step open the command prompt and then Run ipconfig to verify IP allocation from the VPN address pool.<\/p>\n<p><a href=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/verifying-ip-address.webp\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-108303\" src=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/verifying-ip-address.webp\" alt=\"verifying ip address\" width=\"482\" height=\"129\" \/><\/a><\/p>\n<h3>Conclusion<\/h3>\n<p>Thus, in today\u2019s article, we covered all the information about Point-to-Site Connectivity along with the demonstration. We believe you liked this article and will be in our further Azure journey.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In this article, we will gain knowledge about Point to Site VPN in Azure. But we will mostly focus on the practical demonstration. So, let us begin. What is Point-to-Site Connectivity in Azure? The&#46;&#46;&#46;<\/p>\n","protected":false},"author":5,"featured_media":108271,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26500],"tags":[26710,26708,26706,26711,26709],"class_list":["post-108154","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-microsoft-azure-tutorials","tag-azure-point-to-site-connectivity-protocols","tag-azure-point-to-site-vpn","tag-azure-vpn-gateway","tag-generate-client-certificates-from-root-certificate-in-azure","tag-vnet-in-azure"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.0 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Azure Point to Site VPN - DataFlair<\/title>\n<meta name=\"description\" content=\"Learn about Point to site Connectivity, its Protocols, Creating a VNet &amp; VPN Gateway &amp; Generating Client Certificates from Root Certificate.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Azure Point to Site VPN - DataFlair\" \/>\n<meta property=\"og:description\" content=\"Learn about Point to site Connectivity, its Protocols, Creating a VNet &amp; VPN Gateway &amp; Generating Client Certificates from Root Certificate.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/\" \/>\n<meta property=\"og:site_name\" content=\"DataFlair\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/DataFlairWS\/\" \/>\n<meta property=\"article:published_time\" content=\"2022-03-23T03:30:43+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-03-23T04:53:18+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"628\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"author\" content=\"DataFlair Team\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@DataFlairWS\" \/>\n<meta name=\"twitter:site\" content=\"@DataFlairWS\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"DataFlair Team\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"13 minutes\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Azure Point to Site VPN - DataFlair","description":"Learn about Point to site Connectivity, its Protocols, Creating a VNet & VPN Gateway & Generating Client Certificates from Root Certificate.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/","og_locale":"en_US","og_type":"article","og_title":"Azure Point to Site VPN - DataFlair","og_description":"Learn about Point to site Connectivity, its Protocols, Creating a VNet & VPN Gateway & Generating Client Certificates from Root Certificate.","og_url":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/","og_site_name":"DataFlair","article_publisher":"https:\/\/www.facebook.com\/DataFlairWS\/","article_published_time":"2022-03-23T03:30:43+00:00","article_modified_time":"2022-03-23T04:53:18+00:00","og_image":[{"width":1200,"height":628,"url":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp","type":"image\/webp"}],"author":"DataFlair Team","twitter_card":"summary_large_image","twitter_creator":"@DataFlairWS","twitter_site":"@DataFlairWS","twitter_misc":{"Written by":"DataFlair Team","Est. reading time":"13 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#article","isPartOf":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/"},"author":{"name":"DataFlair Team","@id":"https:\/\/data-flair.training\/blogs\/#\/schema\/person\/7f83c342f5d1632d6f7b4b0b0f447823"},"headline":"Azure Point to Site VPN","datePublished":"2022-03-23T03:30:43+00:00","dateModified":"2022-03-23T04:53:18+00:00","mainEntityOfPage":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/"},"wordCount":1201,"commentCount":0,"publisher":{"@id":"https:\/\/data-flair.training\/blogs\/#organization"},"image":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#primaryimage"},"thumbnailUrl":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp","keywords":["Azure Point to Site Connectivity Protocols","Azure Point to Site VPN","Azure VPN Gateway","Generate Client Certificates from Root Certificate in Azure","VNet in Azure"],"articleSection":["Microsoft Azure Tutorials"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/","url":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/","name":"Azure Point to Site VPN - DataFlair","isPartOf":{"@id":"https:\/\/data-flair.training\/blogs\/#website"},"primaryImageOfPage":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#primaryimage"},"image":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#primaryimage"},"thumbnailUrl":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp","datePublished":"2022-03-23T03:30:43+00:00","dateModified":"2022-03-23T04:53:18+00:00","description":"Learn about Point to site Connectivity, its Protocols, Creating a VNet & VPN Gateway & Generating Client Certificates from Root Certificate.","breadcrumb":{"@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#primaryimage","url":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp","contentUrl":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2022\/03\/azure-point-to-site-vpn.webp","width":1200,"height":628,"caption":"azure point to site vpn"},{"@type":"BreadcrumbList","@id":"https:\/\/data-flair.training\/blogs\/azure-point-to-site-vpn\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog Home","item":"https:\/\/data-flair.training\/blogs\/"},{"@type":"ListItem","position":2,"name":"Microsoft Azure Tutorials","item":"https:\/\/data-flair.training\/blogs\/category\/microsoft-azure-tutorials\/"},{"@type":"ListItem","position":3,"name":"Azure Point to Site VPN"}]},{"@type":"WebSite","@id":"https:\/\/data-flair.training\/blogs\/#website","url":"https:\/\/data-flair.training\/blogs\/","name":"DataFlair","description":"Learn Today. Lead Tomorrow.","publisher":{"@id":"https:\/\/data-flair.training\/blogs\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/data-flair.training\/blogs\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/data-flair.training\/blogs\/#organization","name":"DataFlair","url":"https:\/\/data-flair.training\/blogs\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/data-flair.training\/blogs\/#\/schema\/logo\/image\/","url":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2016\/07\/Data-Flair.png","contentUrl":"https:\/\/data-flair.training\/blogs\/wp-content\/uploads\/sites\/2\/2016\/07\/Data-Flair.png","width":106,"height":48,"caption":"DataFlair"},"image":{"@id":"https:\/\/data-flair.training\/blogs\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/DataFlairWS\/","https:\/\/x.com\/DataFlairWS","https:\/\/www.linkedin.com\/company\/dataflair-web-services-pvt-ltd\/","https:\/\/www.youtube.com\/user\/DataFlairWS"]},{"@type":"Person","@id":"https:\/\/data-flair.training\/blogs\/#\/schema\/person\/7f83c342f5d1632d6f7b4b0b0f447823","name":"DataFlair Team","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/4cf3a74600d131330b8c481d519afd1574093ed89f6d3396a95393ad223eb7cd?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/4cf3a74600d131330b8c481d519afd1574093ed89f6d3396a95393ad223eb7cd?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/4cf3a74600d131330b8c481d519afd1574093ed89f6d3396a95393ad223eb7cd?s=96&d=mm&r=g","caption":"DataFlair Team"},"description":"DataFlair Team creates expert-level guides on programming, Java, Python, C++, DSA, AI, ML, data Science, Android, Flutter, MERN, Web Development, and technology. Our goal is to empower learners with easy-to-understand content. Explore our resources for career growth and practical learning.","url":"https:\/\/data-flair.training\/blogs\/author\/dfteam1\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/posts\/108154","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/comments?post=108154"}],"version-history":[{"count":4,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/posts\/108154\/revisions"}],"predecessor-version":[{"id":108304,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/posts\/108154\/revisions\/108304"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/media\/108271"}],"wp:attachment":[{"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/media?parent=108154"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/categories?post=108154"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/data-flair.training\/blogs\/wp-json\/wp\/v2\/tags?post=108154"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}