Yep, great feedback, GreenMan. The upstream/L3 switch that you mention will be the decision maker in this scenario. In the future, they are considering a separate MPLS WAN (via Cisco ISR connected to distro Meraki425) that will also inject dynamic learned routes into the distribution. I like OSPF from the MXs for the dynamic nature of failover as I can get creative with some of the OSPF metrics for granular path selection. Granted it my be overkill in this situation and I am aware of the longest prefix match for route selection, VOIP and site-to-site file sharing (CIFS) is currently driving the need for full mesh. This customer has no on premise servers anywhere (100% in the cloud) which I have never actually run across before. There is no HUB. We have sized their larger sites (~200 people) with MX100s and smaller sites (~50 people) with MX84s. The design was for warm standby failover but we fully licensed both in case we needed to downshift to a dedicated VPN concentrator and dedicated NAT mode firewall to handle the load. Thanks for the discussions. As always, I welcome any feedback.
... View more