DNS Forwarders Configure Virtual Appliances Configure a Second VA

Last updated: Aug 29, 2025

Configure a Second VA

Repeat the previous steps to configure a second VA. A second VA is required for continuous operation, high availability, and automatic upgrades.

  • Do not clone the first VA. Secure Access does not recognize a cloned VA.
  • Ensure that your second VA is set up manually.

Note: Azure AD Domain Services is currently not supported. For identity integration with the VA, the AD Connector and Domain Controllers should be deployed as VMs in Azure. Alternately, these components can be deployed on-premise provided there is an ExpressRoute or MPLS connection over which the AD Connector can communicate with the VA in Azure.