You want VPN traffic to match packets from internal interfaces. You also want the traffic to exit the
Security Gateway bound for all site-to-site VPN Communities, including Remote Access
Communities. How should you configure the VPN match rule?
internal_clear > All_communities
Internal_clear > External_Clear
Communities > Communities
internal_clear > All_GwToGw