Hi guys.
Just general question.
Could somebody explain why dynamic routing OSPF, EGRP, BGP works w/ problem via route base s2s VPN but not via policy base firewall?
Thank you.
so it's possible to use policy based VPN with BGP. is it correct?
BGP is a little bit tricky. With its unicast transport you can send BGP through a policy-based VPN. But for the learned routes, this traffic also has to be part of the crypto-policy. Typically a GRE tunnel is used here which can also transport any traffic based on the learned routes.