New to the concept of IWAN and trying to deploy branch site through apic-em IWAN app . The hub site is deployed successfully with iwan app. The branch router is booting with bootstrap (in bootstrap, NATed IP is used which is 22.214.171.124). For some reason branch router cannot contact apic-em. Also, configured below nat configuration on hub2 router -
ip nat inside source static 10.10.10.1 126.96.36.199 vrf IWAN-TRANSPORT-2
The NAT is not vrf aware and so you need to configure VASI on the inet hub router in order to reach the controller IP.