{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
        "slug": "dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter",
        "url": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/"
        },
        "title": "Plan the client address pool for Azure Network Adapter",
        "summary": "What address space is needed when connecting a server through Azure Network Adapter?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "network-infrastructure",
            "label": "Networks & infrastructure",
            "alt": "Resilient network core with engineered blue and gold data paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-08T18:13:09+00:00",
        "modified_at": "2026-09-08T18:29:34+00:00",
        "reviewed_on": "2026-09-08",
        "reading_minutes": 1,
        "word_count": 219,
        "potentially_affected": "Administrators evaluating Windows Admin Center Azure Network Adapter for server-to-Azure connectivity.",
        "dse_recommendation": "Have the network owner compare the proposed client pool against both address plans.",
        "primary_source": {
            "name": "Connect server to Azure Virtual Network - Azure Network Adapter",
            "url": "https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Azure Network Adapter uses a Point-to-Site VPN connection to connect a server with an Azure virtual network. Microsoft describes this option for a small number of servers and states that it needs neither an on-premises VPN device nor a public-facing client address. Its private client address pool must not overlap the connecting on-premises location or destination virtual network. <a href=\"https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Confirm the active Azure subscription, existing virtual network, server internet access, and Windows Admin Center integration prerequisites. Scope this design to the servers needing the connection, not an assumed site-wide transit service. Review gateway resources and associated charges before creation.</p>\n<h2>DSE recommendation</h2>\n<p>Have the network owner compare the proposed client pool against both address plans. Reserve the accepted range and identify the target subscription, network, and gateway in the change record. Agree which server-to-Azure application flow will demonstrate success. Keep connection removal and any newly created Azure resource cleanup under separate, explicit ownership.</p>\n<h2>Verification</h2>\n<p>After an approved setup, inspect the address assigned to the server connection and verify it belongs to the reserved pool. Test the named application flow and confirm the intended destination network. Review unexpected routes or overlapping addresses before adding another server to the connection plan.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Connect server to Azure Virtual Network &#8211; Azure Network Adapter</a>. Source reviewed September 8, 2026.</p>",
        "content_text": "Source facts\nAzure Network Adapter uses a Point-to-Site VPN connection to connect a server with an Azure virtual network. Microsoft describes this option for a small number of servers and states that it needs neither an on-premises VPN device nor a public-facing client address. Its private client address pool must not overlap the connecting on-premises location or destination virtual network. Microsoft Learn.\nApplicability\nConfirm the active Azure subscription, existing virtual network, server internet access, and Windows Admin Center integration prerequisites. Scope this design to the servers needing the connection, not an assumed site-wide transit service. Review gateway resources and associated charges before creation.\nDSE recommendation\nHave the network owner compare the proposed client pool against both address plans. Reserve the accepted range and identify the target subscription, network, and gateway in the change record. Agree which server-to-Azure application flow will demonstrate success. Keep connection removal and any newly created Azure resource cleanup under separate, explicit ownership.\nVerification\nAfter an approved setup, inspect the address assigned to the server connection and verify it belongs to the reserved pool. Test the named application flow and confirm the intended destination network. Review unexpected routes or overlapping addresses before adding another server to the connection plan.\nOfficial references\nMicrosoft Learn: Connect server to Azure Virtual Network – Azure Network Adapter. Source reviewed September 8, 2026.",
        "content_markdown": "## Source facts\n\nAzure Network Adapter uses a Point-to-Site VPN connection to connect a server with an Azure virtual network. Microsoft describes this option for a small number of servers and states that it needs neither an on-premises VPN device nor a public-facing client address. Its private client address pool must not overlap the connecting on-premises location or destination virtual network. [Microsoft Learn](https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter).\n\n## Applicability\n\nConfirm the active Azure subscription, existing virtual network, server internet access, and Windows Admin Center integration prerequisites. Scope this design to the servers needing the connection, not an assumed site-wide transit service. Review gateway resources and associated charges before creation.\n\n## DSE recommendation\n\nHave the network owner compare the proposed client pool against both address plans. Reserve the accepted range and identify the target subscription, network, and gateway in the change record. Agree which server-to-Azure application flow will demonstrate success. Keep connection removal and any newly created Azure resource cleanup under separate, explicit ownership.\n\n## Verification\n\nAfter an approved setup, inspect the address assigned to the server connection and verify it belongs to the reserved pool. Test the named application flow and confirm the intended destination network. Review unexpected routes or overlapping addresses before adding another server to the connection plan.\n\n## Official references\n\n[Microsoft Learn: Connect server to Azure Virtual Network – Azure Network Adapter](https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter). Source reviewed September 8, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
                "url": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-08"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Plan the client address pool for Azure Network Adapter",
                        "item": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
                "url": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/",
                "headline": "Plan the client address pool for Azure Network Adapter",
                "description": "What address space is needed when connecting a server through Azure Network Adapter?",
                "abstract": "What address space is needed when connecting a server through Azure Network Adapter?",
                "articleBody": "Source facts\nAzure Network Adapter uses a Point-to-Site VPN connection to connect a server with an Azure virtual network. Microsoft describes this option for a small number of servers and states that it needs neither an on-premises VPN device nor a public-facing client address. Its private client address pool must not overlap the connecting on-premises location or destination virtual network. Microsoft Learn.\nApplicability\nConfirm the active Azure subscription, existing virtual network, server internet access, and Windows Admin Center integration prerequisites. Scope this design to the servers needing the connection, not an assumed site-wide transit service. Review gateway resources and associated charges before creation.\nDSE recommendation\nHave the network owner compare the proposed client pool against both address plans. Reserve the accepted range and identify the target subscription, network, and gateway in the change record. Agree which server-to-Azure application flow will demonstrate success. Keep connection removal and any newly created Azure resource cleanup under separate, explicit ownership.\nVerification\nAfter an approved setup, inspect the address assigned to the server connection and verify it belongs to the reserved pool. Test the named application flow and confirm the intended destination network. Review unexpected routes or overlapping addresses before adding another server to the connection plan.\nOfficial references\nMicrosoft Learn: Connect server to Azure Virtual Network – Azure Network Adapter. Source reviewed September 8, 2026.",
                "datePublished": "2026-09-08T18:13:09+00:00",
                "dateModified": "2026-09-08T18:29:34+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260908-242-plan-the-client-address-pool-for-azure-network-adapter/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Plan the client address pool for Azure Network Adapter"
                },
                "articleSection": [
                    "Business Continuity",
                    "IT"
                ],
                "keywords": [
                    "Business Continuity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 219,
                "timeRequired": "PT1M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Connect server to Azure Virtual Network - Azure Network Adapter",
                    "url": "https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter"
                }
            }
        ]
    }
}