Support Center > Search Results > SecureKnowledge Details
Disabling MEP for Endpoint VPN Client Technical Level
Symptoms
  • Multiple Firewalls are configured with the same encryption domain. Users can connect to a particular site after creating that site. However, further connections are routed to another Firewalls. The site information shows the IP address of the different Firewall.

  • A single firewall or a High-Availability cluster is located behind a Load Balancer that connects to more than one ISP. Users can connect to a particular site after creating that site. However, further connections are routed to another ISP. The site information shows the IP address of the different ISP.

  • After creating the site, Client-to-Site VPN works fine. Then the created site disappeared after disconnect and VPN cannot re-connect unless creating the site again. Also many .crash files are located.
Cause

'automatic_mep_topology' is setting is enabled. This causes the VPN Client to update the Site information with another Firewall's IP address, or with Load Balancer's ISP IP address.


Solution
Note: To view this solution you need to Sign In .