Well, we did consider using BGP, but it requires us to run MX450 in one-armed mode, which means we need a pair of super high-end high-powered routers in front of the MX450 to NAT with MX450 having just 1 single IP address. Since it needs to talk to the internet and internally at the same time. That was not an option for us either to scale out quickly, as it took some 6+ months for us to purchase a pair of Cisco ASR routers for a separate project due to supply chain issues. We just cannot wait that long.
There are things I wanted to do from design perspective but reality shows me otherwise.
So I'm left with this right now. Cisco responded last night and they can disable the ability for hubs to talk to each other in the backend, it's an hidden option. I'll be calling Cisco support this morning to get this going.