Thanks for the link. I followed it to a t and it definitely looks like our problem. The thing is, I can ping from the MX100 on 14.53 to AWS private subnet no problem (on IKEv1) but when I change to IKEv2 in Meraki site-to-site non-meraki VPN, it dies when pinging from MX100 on 15.44 Both IKEv1 and IKEv2 are checked in AWS VPN tunnel options and DES is disabled. Can't get my head around this.
... View more