Hi,
I'm in the process of investigating a conversion from non-CP firewall to VSX virtual firewall.
The current device has lots of unnumbered (route-based) tunnels to third parties with various different vendor firewalls. VSX requires VTI's to have IP addresses.
A quick test between my lab VSX and a standalone CP with an unnumbered VTI (statements such as "set static-route 192.0.2.1/32 nexthop gateway logical vpnt9 on") seems on cursory testing to work.
Has anyone else used numbered VTI's interoperating with remote unnumbered tunnels, is it supported and are there any caveats please?
Thanks!
Jamie