I need to know if this scenario is possible:
I have a S2S VPN between two clusters in two different geographical locations with their own public IPs;
They are also part of the same RemoteAccess community, but the actual connection points to the first cluster public IP (the IP configured in the VPN client);
Users connect to the HQ's IP and since there is also the S2S can reach the BO network and they are happy.
For reasons I'll have to completely turn off the HQ cluster for some hours but I need to make users connecting to the BO, where I will move some servers they need during this maintenance.
I've read about MEP remote access, but I'm not sure this is what I need; I also tried to just enable the Mobile Access blade on the BO cluster, configuring it like a regular VPN, but when I configure my VPN client pointing to its IP it doesn't connect (negotiation with site failed).
There are two domain controllers for both sites and I checked that the BO firewalls can ping them.
Is this supported?
How could I allow people to connect during the maintenance?