VPN Full-Tunnel Exclusion

whistleblower
Getting noticed

VPN Full-Tunnel Exclusion

Hi guys,

 

I´ve been reading through the documentation

https://documentation.meraki.com/MX/Site-to-site_VPN/VPN_Full-Tunnel_Exclusion_(Application_and_IP%2...

and would like to ask a question regarding a potential backup of the excluded traffic!

 

let`s assume that I´d like to sent all TCP Traffic destinated on Port: 80 and 443 directly on the local breakout!

What will happen when the internet breakout is having a problem... is there a mechanism that checks whether the connection works and if not, would the traffic be routed via the auto vpn default route despite the policy and thus still work?

2 Replies 2
ww
Kind of a big deal
Kind of a big deal

I dont think so.

 

Also 99% of the time local breakout doesnt work your autovpn also dont work.


@ww wrote:

Also 99% of the time local breakout doesnt work your autovpn also dont work.


I don`t think so... because as in my case it`s possible to use e.g. MPLS and I think that many deployments are probably hybrid meaning Internet and MPLS as access!

Get notified when there are additional replies to this discussion.