Does this config allow the MX to inspect the RA-VPN internet-bound traffic? Seems like encryption would terminate on the ASA, but is the MX the gateway for RA-VPN internet bound traffic? Or alternatively do you 1:1 NAT the ASA on the MX? I ask because the ASA uses firepower to inspect RA-VPN tunnel-all. If one were to rip and replace with Meraki MX advanced sec, the ASA no longer does deep packet inspection on RA-VPN traffic (I want to make sure the MX can inspect the RA-VPN tunnell-all traffic, without keeping Firepower active).
... View more