This article has not been completed yet. However, it may already contain  helpful Information and therefore it has been published at this stage.

Prerequisites:

  • Azure PIP (Public IP)
  • VNET + Subnet
  • NSG + APIM Rules specified (see Link)

Inbound Security Rules:

Outbound Security Rules:

Guide:

Changes can take from 15 to 45 minutes to apply.

Result:

Using the correct host entries on the workstation from which you access the APIM or the correct internal DNS modifications (Azure Private DNS is also an option), the service now responds.

The only thing missing is a working API.

But that's a topic for another time.

References:

Connect to an internal virtual network using Azure API Management
Learn how to set up and configure Azure API Management in a virtual network using internal mode