Full mesh in the network using ISR and DMVPN. Security needs to improve - no firewall between the connections - therefore I feel they need
to move to flexvpn on CE ISR to central ASA from the -X series.
I know migrating from DMVPN to flexvpn should be easy, however I cannot find a trace on the real why we need to go forward with flexvpn.
- Ike v2 for flexvpn vs ike v1 for dmvpn
- ASA as the endpoint for the flexvpn
Pro's/Con's anyone? Caveats?