Firewall rule vpn site to site

Axonman0001 Posts: 4
First Comment
edited April 2021 in Nebula

Can you please advise how to setup firewall rules on our nsg50 regarding vpn site to site tunnel.( nebula to non-nebula)

I have setup a vpn ipsec tunnel to office. The inbound machine only needs two ip-adresses on the office vpn lan(non nebula ), how do I block all others in nebula the easiest way?

best regards,


  • TomorrowOcean
    TomorrowOcean Posts: 59  Ally Member
    First Anniversary Friend Collector First Answer First Comment
    I think you may configure two firewall rules that one is allow two remote site IP, one is deny all remote site IP.
    Maybe you will also need to allow remote interface IP because I remember NSG will do VPN connectivity check with that IP. 

Nebula Tips & Tricks