I have 3 MX boxes each of them are MX450, MX250 and MX84. I have successfully peered site to site vpn with all boxes where MX450 and MX250 act as hub and MX84 as spoke.
Lan to Lan communication between MX250 and MX84 have no issues where both ends station communicate with eachother. However stations behind MX250 and MX84 fails to connect to stations behind MX450.
I can see packets received and sent by stations behind MX450 but failed to connect. I suspect MX450 is blocking from somewhere but didnt find any clue. Upgraded firmware to latest stable release too.
Stations behind MX250 and MX84 can ping to the LAN interface IP of MX450 though but not to the it's lan stations.
Need idea to troubleshoot the issue.