Regarding the RRI ceased to function, I think that is a bug. How come adding a static route prevents the 3002 to advertise its private network to the Concentrator in the other side ?
Regarding the several networks behind the 3002, the answer is 3002 will not advertise the other networks via RRI other than its private interface network. So you are limited with only ONE network to be able to encrypt behind a VPN3002.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...