Point-to-site connectivity in Virtual WAN, giving individual clients a gateway and configuration. It needs the Standard Virtual WAN tier and is not how branch offices connect.
Also called point-to-site in Virtual WAN.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains User VPN in context, with comparison tables and the common traps.
Terms in this definition
- Virtual WAN
A networking service built around hubs that Microsoft manages. The Basic type handles only site-to-site VPN; Standard brings in ExpressRoute, point-to-site and full transit.
- Standard deployment type
A Foundry deployment type billed per token that keeps processing of prompts and responses inside the Azure geography of the resource, meeting data residency needs at lower volumes.
- Archive
Offline access tier for blobs, cheapest to store yet dearest to access. Reading a blob means rehydrating it first, which can take as long as 15 hours.
- CONNECT
In SQL Server, the right to open a connection to a database. Fabric's equivalent is Read permission on an item, which allows connecting to a warehouse or SQL endpoint but not querying anything in it.
Related terms
- Virtual hub
Inside a Virtual WAN, a VNet managed by Microsoft that contains the hub router plus the VPN, ExpressRoute and User VPN gateways. Typically there is one per region, but several hubs can share a region.
- Virtual WAN Basic
A Virtual WAN whose hubs are Basic and so offer site-to-site VPN only, with ExpressRoute, User VPN and full transit all unavailable. It can move up to Standard, but never back down.
- Virtual WAN Standard
Hubs in this Virtual WAN type can host NVAs or Azure Firewall, link to other hubs and pass any-to-any traffic, and they support User VPN and ExpressRoute too.