Yes, our intention is High availability. Peer gateway ( I Mean Customer side Firewall).
On our Side, we have a separate policy package for Primary & DR. currently we have one community with a production side cluster and Customer's side Firewall IP (Interoperable Device)
we are going to create new VPN Community with mentioning DR Site CP Cluster and Client's side same Peer GW IP (Second interoperable Device - Duplicate as Primary side configures because peer GW and Domain same)
Also, we are asking customer to create new community including our DR site and their Gateways.
(No Need automatic failover)
***This is my Question We can use
1. only One interoperable device for both My side communities DR and Primary
2. Create Duplicate Interoperable same as Production site configures then apply new duplicated one for DR community configuration.
Are there any limitation or misconfiguration when i duplicate Interoperable device in checkpoint environment?
I totally understand without duplicate we can do this, but this is for my understanding.
Kindly help me clarify this point.