Hopefully I can describe this right. First current network set up:
Corp/datacenter:
The edge is a Cisco router connected to our "core" L3 switch. Our MX100 is set as a one-armed concentrator/hub that is also connected to the "core" switch. The "core" layer 3 switch is handling the internal routing for the local Corp network and the MX100 providing VPN connection to all the spoke MXs.
The external interface for the Cisco router has several external static IPs terminating to it and they NAT to internal devices in the datacenter/corporate office and to some devices in the spoke locations.
Problem:
NAT addresses going to spoke locations drop all traffic at the MX and cannot reach the spoke location. Any NAT address going to a subnet at the Corp location work.
I have added the external IP range and the external interface IP of the Cisco router to the local network on the MX concentrator under Site To Site VPN - VPN Setting but traffic still is dropped.
Is it possible to route NAT traffic for over the MX VPN in this configuration and if so how would I do so?
I hope that all makes. Please let me know if you want to know any more details and thanks in advance for any assistance.