Hi,
I have read the Meraki documentation in setting up a VPN tunnel from Meraki to Non Meraki. If i understood it correctly, firstly this can only be done on MX that has been configured as Hubs. Secondly, I just need to key in all the necessary IPSec policies vice versa in Meraki and also in the Non Meraki Peer. Next, i would need to key in the destination IP of the Non Meraki Peer. Do correct me if i am wrong.
Now, i have a customer that is giving us some portion of their sites for us to manage. Currently they have 20 sites. They are giving us 8 sites (only branches), the other 12 sites will be coming to us but at a later time due to ongoing contract with the current incumbent.
So, the first 8 sites that they are giving us, i am proposing to deploy Meraki MX67C. However customer also requires IPSec tunneling from those 8 sites to their HQ, pointing back specifically to a SOPHOS XG430.
Based on what i have read, in order to achieve what is required, i need to :
1) Configure all 8 MX67c as hubs
2) Configure the same IPSec policies, destination IPs, etc for all 8 MX67c
Im not well verse in SOPHOS, but based on the XG 430 documentation it can support up to 3000 concurrent IPSec tunnels.
My question is, can this be done? all 8 MX67c configured with the same IPSec policies, destination IPs, creating the IPSec VPN tunnel to SOPHOS XG430.
Has anyone here have any experience deploying this kind of scenario?