I have 2 masquerade MTs with a VPN stablished.
The VPN is working great for all the machines except for the MTs, I can’t communicate from the MTs to the other VPN side. It seems that the MT is trying to route through the default route and not the VPN tunnel.
Some Idea?
In the set-up like that it is imposible that your WAN interfaces to se local interfaces, because the policy is created only for the local interfaces, and only local interfaces can see each other. If you have tried to ping from the router, be sure that you use src-address address of your local interface otherwise it will fail.