Personally, I wouldn't setup SIG tunnels for guest traffic. You'll have to deal with guests accessing weird and wonderful websites that are blocked or encounter issues with the policies you've set. It also adds additional complexity as to utilize the SIG tunnel, your client VLAN has to be setup for SD-WAN, so you'll have to add appropriate firewall rules to prevent communication across L3 boundaries, as well as across the SD-WAN.
... View more