A company has a Virtual WAN deployment and needs to force-tunnel all internet traffic from branch VPN sites through an on-premises firewall. Which configuration achieves this?
-
A
Configure a 0.0.0.0/0 static route on the VPN site pointing to on-premises
-
B
Enable branch-to-branch on the hub and advertise a default route from on-premises via BGP
-
C
Add a UDR on the hub with next hop as on-premises
-
D
Enable internet traffic routing intent pointing to on-premises