Ok, I am going to pair this down to make it easier to understand and explain. Client has multiple sites, but lets just say 2 a office and a data center cause that is all this involved Data Center will be DC , Office will be OFC and 3rd party. So the Servers at the clients DC have a Site to site on the MX to a 3rd party network, Some of the office staff do not use the servers to interact with the 3rd party network. so the network kind of looks like this DC-<->Site2Site<->Office DC<->Site2Site <->3rd party DC<-> Client VPN Resides here When users are using the Client VPN, the have complete access to everything on the server and the 3rd party When in the office, they have access to everything in the DC, but can not reach the 3rd Party I Would rather if at all possible not setup another 3rd Party network site-to-site to the office network, just for a couple of people, but, if thats the last resort.. I will.. Just trying to find if I can just adjust some rules, or routing and get that to work?
... View more