VPN Concentrator Routing

We are setting up a one armed Meraki VPN concentrator at our DC behind another MX. I am trying to understand how routing works when a device comes in through the VPN concentrator to the local network at the DC. How does it know to route to the switch or MX at the DC then to the device? I do not see a way to setup routes on the concentrator which kind of makes sense since it’s set to pass through.

Here’s 11 kewl things you didn’t know you could do with your VPN.

This guide was really helpful when I was doing something similar: VPN Concentrator Deployment Guide - Cisco Meraki Documentation

You have to remember that in concentrator mode, the MX acts as a layer 2 device and cannot route, so it (in most cases) goes out the default gateway of the MX to wherever that leads.

Edit: Read the Other Datacenter Configuration → Routing section to understand the items required for bi-directional comms. In my case, I needed a static route on the upstream device.

Thanks, That was my assumption but it wasn’t clear(to me) in the deployment guide you linked. I guess all VPN con. are like this.