I'd like to block SD-WAN traffic from about 700 sites (specific vlan) to access organization assets and allow monitoring and logging systems only. I have got about 700 subnets, what could be the best way to formulate site-to-site vpn rules to accommodate this requirement. L3 Firewall rules are already in place to blocking/Isolating that specific vlan from other site internal network. Site-to-site outbound firewall
... View more