I have an SRX240 with 2 WAN presentation and different subnets on the LAN side need to use different WAN presentation for internet access.
The primary WAN presentation has approximatly 25 VPNs terminating on it, these need to be routable from all LAN VLANs, but only VLAN 10 should use this for internet access. All other vlans should use the secondary WAN presentations for internet access (but still have access to the sites on VPN).
Is the best way to achieve this to have two routing instances with different default routes? If so, how would I allow both instances to access the VPNs?
If this isn't clear I'll put together a diagram.
Thanks