I configured 2 sites with an SRX100 connected with a routed based ipsec.
Now I configured dynamic VPN on site 1 which works perfectly to site 1 resources.
However, I would like to be able to route to the second site as well from the dynamic VPN.
I configured the remote-protected-resources with the site 2 prefix and this seems to push the route to the Pulse client.
Do I need extra policies or just insure that my policies to my vpn zones allow the vpn address pool? (source match any, destination match any)?
Is my route based VPN SA with just the 2 remote lans as proxy ids blocking the traffic from my dynamic vpn address pool outside of the SA prefixes?