So I think I have wrapped my head around this a bit more. I have set up Client VPN on the vmx100. I don't want to set up a split tunnel, so I will add the azure firewall as the next hop so it will route internet traffic and internal traffic.
Does this sound correct? I know the vmx100 does not support full tunnel.