Good Morning -
I have multiple Meraki AutoVPN spoke sites which interconnect via a Hub concentrator.
Hub
Spoke A (Provisioning VLAN 50)
Spoke B
Spoke C
etc
I need to configure traffic from spoke site to bypass the VPN concentrator and communicate directly to Spoke A, to reduce hops and latency for imaging. However I only want this to affect traffic destined for the Provisioning VLAN 50 located at Spoke A, with all other traffic still routing through the S2S VPN as normal.
It seems there may be a few different ways to do this, I'm just researching and trying to determine the best and most secure option. I've configured a local internet breakout L3 rule on Spoke B to test, which should be excluding any protocol and port destined for the Provisioning VLAN 50 from the AutoVPN tunnel, however tracing to the VLAN 50 gateway IP, it appears that my traffic is still going through the concentrator Hub.
Any input or ideas would be very appreciated! Thank you!