We currently have an MX85 behind an MX450 that only connects to an Azure VPN that feeds it back to the MX450 lan. The MX85 is in routed mode. After doing some reading, I'm seeing that we might be better off just having that MX85 in one-arm concentrator mode since nothing else will be connecting behind the MX85.
Is one-arm concentrator best practice for this application? Other than bypassing having the MX85 having a firewall, are there any other advantages?
Thank you for any help and time you spend answering.