Hey guys,
I´m sure I´m not the first one with that issue, however I couldn´t find a way to solve it so far.
As I´m here in Mexico where the word "stable" as a different meaning than in other parts of the world, I do have to change my Internet breakout quite often, doing so by changing the default route of the UTM.
The only thing I couldn´t manage so far is how to do this without breaking SSL-VPN connections?
What I´ve seen so far that if a user connect by SSL VPN to Interface-IP 1.2.3.4 and this interface has the default route active, everythings fine. As soon as I use for whatever reason a second interface for default route with IP 4.3.2.1, the user is still able to connect as the external IP is reachable, but the tunnel will not be established (I suppose due to the response coming from a different IP).
So how could I solve that? I haven´t found a setting like "always use this interface for SSL-VPN".
Or would it work with a public DNS record, containing IPs of all my external interfaces and configuring the VPN clients for this name?
Any help would be very appreciated here.
Many thanks in advance.
M.
This thread was automatically locked due to age.