We currently aim for the following layout:
- The SDWAN Gateway establishes HUB/Spoke SDWAN tunnels and routes only RFC1918 traffic through these tunnels.
- establishes a Non-Meraki peer tunnel with zScaler, which becomes the network gateway, and routes all internet traffic (0.0.0.0/0) through this tunnel.
- Additionally, establishes another tunnel with Cloudify (zScaler), which also becomes the network gateway and routes all internet-bound traffic (0.0.0.0/0) through this tunnel, but only for the GUEST VLAN.
I am researching the MX and non-Meraki VPN peer documentation but cannot find a way to configure the MX in order to use Cloudify Tunnel as the gateway for traffic originating from the GUEST VLAN, while the zScaler Tunnel as the gateway for traffic originating from other VLANs.