Attempting to create a split tunnel VPN for specific remote users. we followed SK https://support.checkpoint.com/results/sk/sk114882 created a new user group with the "ttm" prefix we then copied, renamed, and modified the trac_client_1.ttm file following scenerio 1 of the SK posted. The test user is still unable to connect. We ran the vpn check_ttm command and the file passed the check. Looking through the logs on the client side its showing that the default trac file is being used and not the new modified one. We think it might be an identity awareness issue but are unsure of next steps.