In 20.5 release there is a ability to add API dynamic SIG tunnels. Whether dynamic or manual is there any way to verify on the Cisco SD-WAN devices or vmanage where traffic is actually going?
Whether a service route is added to the SIG for manual or a newer data policy is defined to point traffic to Secure Internet Gateway both dpi and cflowd outputs only show client source traffic destined the physical WAN interface only.
The issue is the CLI outputs do not include the actual Cisco SD-WAN overlays tunnels or SIG tunnels.
Anyone else find a way to validate traffic is leaving the appropriate tunnel to confirm policy is working?