Split Tunneling for VPN Clients on the VPN 3000 - Cisco Nov 14, 2007 SSID Tunneling and Layer 3 Roaming - VPN - Cisco Meraki VPN Concentrator tunneling is only officially supported for passthrough/concentrator mode MX devices so it is important to ensure your MX is in passthrough/concentrator mode for this feature to work correctly.

Teleworker VPN and Layer 3 roaming with a concentrator both use the same Meraki Auto VPN technology. Wireless access points should concentrate to a Meraki MX security appliance . It is recommended that a separate network be created in dashboard for each remote site location for purposes of manageability and usage tracking.

I assumed you were talking about using just one device ie. one ASA to replace both the VPN concentrator and the pix. Look at this way, currently your VPN concentrator and and pix are single points of failure. If you replace them with 2 ASAs and use the same topology then both ASAs are single points of failure. Maximum VPN throughput: VPN tunnels: Web caching: Redundant power: List price* MX64: 50: 5 × GbE USB 3G/4G: 250 Mbps: 100 Mbps: 50 — — $595: MX64W: 50: 5 × GbE 802.11ac WiFi USB 3G/4G: 250 Mbps: 100 Mbps: 50 — — $945: MX65: 50: 12 × GbE (2 PoE+) USB 3G/4G: 250 Mbps: 100 Mbps: 50 — — $945: MX67: 50: 5 × GbE USB 3G/4G: 450 Mbps Cisco VPN Concentrator 3030 - VPN gateway CVPN3030-RED-BUN-RF Cisco VPN Concentrator 3030 - VPN gateway cvpn3030red VPN 3030 Concentrator (Non-Redun. / 1 P/S); 1500users@50Mbps cvpn3030nr The Cisco VPN 3030 Concentrator is a VPN platform designed for medium to large organizations with bandwidth requirements from full T1/E1 through T3/E3 (50 Mbps maximum performance) with support for up to 1,500 simultaneous IPSec sessions or 500 simultaneous clientless sessions.

A Cisco Meraki MX can be provisioned as a VPN concentrator at each datacenter remote sites will need to connect to. This section will provide a brief overview of configuring a one-armed concentrators and discuss special configuration considerations.