I currently have two VPCs in AWS to test connectivity between a spoke VPC and a transit VPC. I am using a trial for a CSR 1000v. On the spoke VPC, I am using AWS Managed VPN (both tunnels are up). I have my route on the private subnet as follows: 10.10.10.0/24 >> Local; 0.0.0.0/0 >> VGW. I can ping both directions as well as use RDP from the transit side to the spoke side, so I feel like the necessary security group rules are correct. Is there anything on the CSR that needs to be adjusted? NAT, default routes, etc? I appreciate any help I can get.Spoke VPC Traffic