A company operates workloads across multiple VPCs. The company must securely access a workload in one of the VPCs, called VPC-A, from an on-premises data center. A network engineer establishes an AWS Site-to-Site VPN connection to a transit gateway. The network engineer configures dynamic routing for the connection, and communication functions correctly. Recently, the owner of VPC-A added an additional CIDR range to the VPC. The VPC-A owner created workloads that use the added CIDR range. The company's on-premises network cannot reach the new workloads. The network engineer must resolve the network connectivity issue and ensure that connectivity is not affected if more VPC CIDR ranges are added to the VPC in the future. Which solution meets these requirements with the **MOST** operational efficiency?