We are having two SG in cluster mode (Active/Standby), currently with one ISP. We have planned to have secondary ISP with Active/Active mode & load sharing.
For RA VPN, endpoints are configured with ISP1 cluster IP 1.2.3.4.
Now, after ISP redundancy and load sharing with ISP2. For RA VPN, if we configure one more site with ISP2 cluster IP 5.6.7.8 at endpoint will it works during primary fails. (User has to disconnect site1 and manually connect to site2).
Is there any other configurations needs to be done at firewall level for VPN routing?
5800, GAIA R80.10.