When switched ISP Link , VPN users were requested to exchange certificates.

We have a Cluster gateway ( Active/Standby)  ,  In a sudden ISP link interruption, the ISP switched to the backup link. It was seen that when VPN users want to connect with SNX, a certificate must be installed again. ( There is no failover status on the cluster. )

Is it normal?

