Thank you Seshu for the information. You are correct the device is configured in full tunnel mode so it makes sense that its not crossing the firewall. I had the traffic flow visualized incorrectly, thinking all traffic would cross the L3 firewall. I was trying to find a way to lock down the LAN ports without having to configure 802.1x authentication.
... View more