Hi everyone,
I'm fairly new with Meraki and have question regarding design best practice.
Here is simple diagram for my deployment plan.

Pair of MX 250 will be hub and deployed in routed mode with public IP.
There will be +- 200 branch, all with same overlapping subnet user. My plan is to translate those subnet to something summarizable (10.0.1.0/24,10.0.2.0/24....) and from core perspective i will just add static route with branch summary address pointing to the MX.
My questions is :
1. With diagram above, is it fine to deploy vpn concentrator on routed mode ? since i have read the documentation best practice to use passthrough mode for vpn concentrator and i'm still not clear what is the downside for using routed mode
2. Do i need to use virtual IP in MX 250 HA pair ? what is the downside of using same uplink IP ?
Any recommendation is appreciated, thank you.
Regards,
Rahmad