Hi,
I have S2S VPN to another 5000 series appliance running R80.10. It happens every now and then that the tunnel is up and one host can SSH to a host on the other end but another one can't. The strange thing is that the host that can't SSH is able to ping the IP on the other end. Problem happens with any protocol (RDP, HTTP, etc). Only ICMP seems to always work.
Resetting VPN tunnel solves the problem but it started to annoy me already so I am looking for more permanent solution. We tried to switch tunnel sharing from per-net to per-host with no success.
Have you ever encountered such issue ? Is it possible to be TP policy on the other end that is causing this issue ?