Hi everyone,
I'm fairly new with Meraki and have question regarding design best practice.
Here is simple diagram for my deployment plan.
![rahmad_1-1582375677666.png rahmad_1-1582375677666.png](https://community.meraki.com/t5/image/serverpage/image-id/11784iF5CC126B005E0C54/image-size/medium?v=v2&px=400)
Pair of MX 250 will be hub and deployed in routed mode with public IP.
There will be +- 200 branch, all with same overlapping subnet user. My plan is to translate those subnet to something summarizable (10.0.1.0/24,10.0.2.0/24....) and from core perspective i will just add static route with branch summary address pointing to the MX.
My questions is :
1. With diagram above, is it fine to deploy vpn concentrator on routed mode ? since i have read the documentation best practice to use passthrough mode for vpn concentrator and i'm still not clear what is the downside for using routed mode
2. Do i need to use virtual IP in MX 250 HA pair ? what is the downside of using same uplink IP ?
Any recommendation is appreciated, thank you.
Regards,
Rahmad