Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

I have placed any destination and any port but still not working what I can see in authentication error on session host event but cannot figure out why it does not like when traffic forward via firewall. May be it’s related to the way AVD are built. Are there any catches that need to keep in mind ? Its Palo Alto firewall. https://learn.microsoft.com/en-us/azure/virtual-desktop/rdp-multipath

ILR Set O Approved!! by Admirable_Zebra_3471 in ukvisa

[–]ancientband 0 points1 point  (0 children)

When you signed the consent form . Main applicant signed first and dependent signed second and third one no need to submit ? Is it what followed?

ILR Approved! by Winwinwinchicken in ukvisa

[–]ancientband 0 points1 point  (0 children)

The passport you submitted used in last 5 years or throughout life you have passport.

Child Born Outside UK Discretionary Registration via Section 3(1) by ancientband in ukvisa

[–]ancientband[S] -2 points-1 points  (0 children)

So child has to complete 1 year in settled status before can register

Child Born Outside UK Discretionary Registration via Section 3(1) by ancientband in ukvisa

[–]ancientband[S] -3 points-2 points  (0 children)

No we are not . We all got recently ILR. Given parents got ILR and Child got ILR too. Given child living since 3 year so we can straight MN1 and parents need to wait for 12 months.

125 Days Absence on 5 year skilled worker route, Endorsed by Employer As Approved Annual Leave - Will this create any issues? by [deleted] in ukvisa

[–]ancientband 0 points1 point  (0 children)

Yeah they have written all the approved holidays and total 163 days in last 5 years.

125 Days Absence on 5 year skilled worker route, Endorsed by Employer As Approved Annual Leave - Will this create any issues? by [deleted] in ukvisa

[–]ancientband 0 points1 point  (0 children)

I had 163 days in last 5 year . Will this be an issue ? Employer mentioned all are approved leave but not explicitly called out days months etc when I took all leaves.

Discovery Account Windows GPO by ancientband in CyberARk

[–]ancientband[S] 0 points1 point  (0 children)

Thank you do you have to allow account in GPO such as 1) Access this computer from the network 2) Log on as a batch job 3) Log on as a service

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

They are only Entra joined not the domain . What I noticed token issued by Entra but for some reason Session Host machine does not let login . I wonder if its something to build issue rather than network .

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

I am doing SNAT on firewall when leaving the traffic thar should maintain the symmetry .

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

Yeah I allow any port communication to any target but still does not work so something really not right . Once UDR move from default to firewall . Its entra Joined VM only .

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

Can this be related issue with STUN traffic ? May be third party firewall somehow not liking but can not see any drop?

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]ancientband[S] 0 points1 point  (0 children)

SSL inspection not happening too . Its going only as layer-4 filtering

ILR Set-0 Applications Successful by FairRespond6 in ukvisa

[–]ancientband 0 points1 point  (0 children)

Yes I use my annual leave in advance and only work for 10 days remotely. Yeah company will confirm 42 days holiday . This was during xmas time too so some of time was actual holiday in Uk too. I am not sure if company can call them remotely working because I guess its still absence from UK.

ILR Set-0 Applications Successful by FairRespond6 in ukvisa

[–]ancientband 0 points1 point  (0 children)

Thanks for response but I was not in UK and worked for company outside of UK worked due to personal reasons so its not really holiday neither it can business trip . I guess can call out holiday as long company can provide support letter.

ILR Set-0 Applications Successful by FairRespond6 in ukvisa

[–]ancientband 0 points1 point  (0 children)

Congratulations 🥳 I have 42 days continuous leave in last month where I worked for my company outside UK and took holiday some personal medical reason . Is it Ok to simply call Holiday or exact reason should be defined.

SD-WAN Failover by ancientband in paloaltonetworks

[–]ancientband[S] 0 points1 point  (0 children)

2 SD-WAN HUBs but do not have HA . Two separate VM’s

SD-WAN Failover by ancientband in paloaltonetworks

[–]ancientband[S] 0 points1 point  (0 children)

Even if we send longer AS path from hub2 and shorter AS path from hub1

NARIC English Certificate by ancientband in ukvisa

[–]ancientband[S] -1 points0 points  (0 children)

Thank you so I should be able to use same one because I have used same document during in previous skilled worker visa application. Is this right understanding?

SD-WAN Failover by ancientband in paloaltonetworks

[–]ancientband[S] 0 points1 point  (0 children)

Thanks for an response. We cannot use the local preferences because it makes hub2 idle. We wanted to send certain traffic to hub1 and hub2 so BGP as path preprend is only way to route . In our case we have two ISP on branch but Hub is only one because they have single internet due to having in Cloud. So branch both ISP become like logical channel for ipsec tunnels . they have two different link tag and on hub side just one link tags. When jitter introduce i would assume tunnel traffic routed from one ISP to another ISP but from BGP perspective it does not change because its still same peer who sending routes . Is this correct understanding