Adding a point to the question - The whole idea of using full tunnel with Cisco Any connect here is to whitelist the public IP to Azure resources like Virtual machines, SQL managed instances etc. So that people get onto the VPN to connect to these resources & not really be able to connect from a different network
... View more