I’m concerned that a one armed concentrator may not handle my traffic.
I anticipate a half dozen tunnels terminating in my DC. With only one interface on the MX handling traffic it sort of doubles the interface load. What is the realistic throughput I can maintain? I’m used to a typical gateway firewall design where you go in the wan and out the lan or dmz.
I’ve seen clients with about 20 AutoVPN spokes pushing about 150Mbps of traffic through a MX84 configured as a concentrator. The worst the MX performance was hitting was around the 50 mark, so still headroom in it.