That's what I thought, build a static route, but when I go to Security & SD-WAN -> Routing, it shows me this... Unless that is the wrong place to get it. What I did is set up a 1:1 NAT rule where the 198 (which is an non-routeable address) points to the VPN concentrator at .243; and it works, it resolves... what I need to figure out now, is how to make that work at other locations that are site-to-site VPN to the MX; at those locations it doesn't allow me to build 1:1 NAT rules, and it also won't let me create a static route (see above).
... View more