Hi guys,
I am trying to configure a Windows IPsec \ L2TP (Pre-shared Key) client connection for ClusterXL and for standalone gateways. Authentication through AD. I made all the settings by the SK140832. All vpn setting on ClusterXL and on others gateways are the same.
The older client support must be enabled for AD-auth support

Other settings


But the connection only works for standalone gateways. For ClusterXL, I see an error in the logs: “This IKE SA should be used only for L2TP. Probably a computer certificate. "
For ClusterXL:

For others standalone gateways - the connection is perfect

Does anyone have an idea - why?