Site to SIte vpn in Production

Hi Everyone,
have a question or more like need confirmation. When doing labs for site to site we put a static route to the peer. But if this is a production environment. we dont put a static route, right. The router/firewall will already have a default route pointing to the internet and the is the route that is used to reach the peer.


Hello Robert

Yes that is correct. The prerequisite is that there is successful routing between the peers. Whether that is from a static route, a default route or dynamic routing makes no difference. The most common case is when it is applied over the Internet, and this indeed uses the default route to get to the peer on the Internet.

