Hi ,
We have MX to run site to site with an ASA of a different company. There are lots of common subnets in both organisations and therefore we only want the interesting traffic between a non-conflicting pair. So it is 10.0.0.0/24 behind MX and 192.168.1.0/24 behind ASA which needs to talk to each other.
I read about using Tags. The thing I was not sure about was when we create/add a tag, it is applied on the network. Now the network where this MX is sitting is luckily on one subnet which is this 10.0.0.0/24, however it has heaps of static routes, auto-vpn's to Z1's and client vpn networks which talk across in all directions as they are all part of the same organisation. I was not sure if this tag will only apply to the MX LAN subnet or will also include these other subnets. If other subnets will be part of this tag, we will have issues as there are lots of conflicting subnets across the ASA side.
I also read about parent tag and sub-tags options, but could not find it in the dashboard. I am sure I wouldn't be the first one trying to achieve this solution. Has someone tried this or can guide me in the right path?
Any suggestions or thoughts will be highly appreciated.
Thanks.
Mo