VPN Full-Tunnel Exclusion

whistleblower
Getting noticed

VPN Full-Tunnel Exclusion

Hi guys,

 

I´ve been reading through the documentation

https://documentation.meraki.com/MX/Site-to-site_VPN/VPN_Full-Tunnel_Exclusion_(Application_and_IP%2...

and would like to ask a question regarding a potential backup of the excluded traffic!

 

let`s assume that I´d like to sent all TCP Traffic destinated on Port: 80 and 443 directly on the local breakout!

What will happen when the internet breakout is having a problem... is there a mechanism that checks whether the connection works and if not, would the traffic be routed via the auto vpn default route despite the policy and thus still work?

2 Replies 2
ww
Kind of a big deal
Kind of a big deal

I dont think so.

 

Also 99% of the time local breakout doesnt work your autovpn also dont work.


@ww wrote:

Also 99% of the time local breakout doesnt work your autovpn also dont work.


I don`t think so... because as in my case it`s possible to use e.g. MPLS and I think that many deployments are probably hybrid meaning Internet and MPLS as access!

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels