- Acgivate the Subnets in Azure if you use split tunneling in your VPN portal settings ( to make sure there’s a local route )
- Make sure your VPN Client Subnet is in the Phase2 Selectors on the IP Sec if you route specific Subnets ( instead of 0.0.0.0 )
- Enable the IPv4 policies SSL.Root -> Azure IP Sec VPN ( NO Nat )
- Enable the SSL.root subnet in Azure per below ( 10.212.134.0/24 )