When you said Meraki mesh, I assume you have multiple sites using Meraki? If so, you need to make sure your local pfsense has ipsec to the site where the 10.1.0.0/24 subnet is.