I have been fighting with a similar issue, already event open case in TAC
Customer had on 77.30 cluster 2 entry points configured for remote VPN
The External Interface (ip configured on Main IP) where users connect to normally and a secondary Internal interface connected to a Dedicated LAN (with other router as next hop)
On the secondary interface side the customer uses a 3rd party client that connects normally and all works fine on 77.30.
After upgrade to R80.20 the 3rd party client stopped working, as this is not supported we are trying out Checkpoint VPN client.
The Checkpoint VPN client does not work on either version, on R77.30 it connects 1 time and then defaults back to the Main IP.
Exactly the behavior described on this SK discussed here.
I followed the Admin Guide and configured under IP_RESOLUTION_MECHANISM = topologyCalc - Calculate the IP address used for the VPN tunnel by network topology based on the location of the remote peer
This does not work same effect.
Did i understand correctly the admin guide ? this should enable the client to connect to the correct interface.
Is there a way to define a static connection ip for the SITE on the Client Trac.defaults?
There has to be a way to connect over more then 1 interface. (Secure remote connects and all works until the customer disconnects, the client changes the SIte ip also and client needs to change it manually)