I'm a noob and self taught and I'm sure I'm missing something "stupid".
These are the basic connections for my TZ 100
I have only three user defined routing policies that simply say if something comes from any source destined for the IP range listed, route through that interface. For example 10.129.205.130 would route through X2.
From my office network, I successfully get out to internet, both work VPNs and to the AWS cloud VPC.
The problem is I need a machine in the Amazon VPC to reach my work VPNs. From the cloud machine I can access computers on my office network. For example, I can access a web server running on my office network by opening a web browser and entering http://192.168.1.172.
However when I attempt to access either IP range that should be routed through X2 or X3 it doesn't make it through and I don't know why.
The packet...