Hi, I am setting up a secure client/NG AI FW1 VPN. For some reason, when connecting with the secure client attempts to establish the Phase I tunnel with the internal IP address of the FW, which it cannot connect to. Both IP address of the firewall are routable, but only the external IP address is accessible. Does anyone know what might be causing secure client to connect to the internal interface? Thanks!
Is your gateway object defined as the internal ip? VPNs will attach to the ip the object is defined as first -- then you can pull in concepts such as dynamic interface resolution.