We have setup DMVPN hub an spoke configuration with IPsec enabled. This setup works very well.
I noticed when configuring a simple point-to-point VPN with IPsec [without DMVPN, just a simple point-to-point encrypted virtual link], you needed to specify "interesting traffic" to determine which data would be sent to the encryption/decription engine.
With DMVPN, it appear all traffic is encrypted and no way to utilize "interesting traffic" ACLs.
IS there a way to enable "interesting traffic" ACLs with IPsec on DMVPN or is it all or nothing?
I can post the config(s) if desired.