We are part way through a firewall migration from R80.30 to R81.10.
Both new boxes are built, the passive firewall has been turned off, and the configuration imported to the new R81.10 passive firewall.
Failover of the cluster has worked flawlessly, and we have conducted tests, and everything appears to work with one exception.
Endpoint clients refuse to VPN connect. I have tried an E86.00, E86.30, and E86.60 client, and none of them work, with the eventual error being that it could could not negotiate a connection. SNX, and Capsule VPN, on both Windows 11, and iPhone, work just fine. Even the really old CLI-enabled SNX copy we have works fine.
Restarting services on the primary, failing back to the R80.30 box, and all VPN services are fully restored.
Has anyone else experienced this?
Howard