Dear Colleagues, I have a question about the VPN-hub, firewall and OSPF function of the vMX100. If I have MX64 and Z1 at the branches connecting with VPN-tunnels to a vMX100 in Azure with OSPF Advertise remote routes enabled, does this mean that that it will advertise the routes it learns from the branches will be advertised back to the branches over the tunnels? For example: Site A - vMX100 Site B - Z1 Site C - MX64 B --- [VPN] --- A --- [VPN] --- C Will site B learn about the subnet in site C without static routes configured anywhere? Is there any possibility to add L3 firewall rules between these from the vMX100?
... View more