I'd go for this instead: https://documentation.meraki.com/MX/Deployment_Guides/vMX_and_Azure_Route_Server A lot will depend on how important the service is to you - a single IPsec tunnel to a single IPSec terminator is pretty simple on a drawing - less easy to set up as it's cross-vendor. And if any point of it fails, you might be wishing you'd invested a bit more time in a resilient solution up-front...?
... View more