How to direct remote site's internet traffic to central site
Dear suppor team,
I have an ER605 setup the IKEv2/PSK VPN, and running behind the GPON gateway. I can use iOS device connect to it (client-to-LAN configuration), and access Internet well.
I intend to purchase another ER605 as a remote site router, the idea is to get all clients from that remote site to go via remote site->central site->Internet
I tried to configure a LAN-to-LAN IPsec VPN, but I noticed that I cannot use 0.0.0.0/0 as my local network on central site's ER605.
If a default route is unable to be injected, then even if the remote site's IPsec VPN is working, it will only be able to exchange info of specific subnets from both sides, ie the remote site will not automatically route internet traffic to central site, and exit to internet.
(the other alternative is to configure my remote ER605 to be client-to-LAN setting again, is this the right understanding for my use case?)
Is there something I missed in my configuration, if i'd like to stay with LAN-to-LAN mode?