Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Edit Configs SSL VPN - User Portal

Hey guys

When we configure SSL VPN, each user can access the user portal and download their settings.

However, these settings define access with all XG interface IPs.

I find this a nuisance, because one of the interfaces is a private IP and when the user sends connect he tries first on it, then goes to the next and connect.

This causes an extra delay in the connection. So I was wondering if you can edit these settings. It's possible?



This thread was automatically locked due to age.
Parents Reply Children
  • FormerMember
    0 FormerMember in reply to Gib GoDesk

    Hi Gib GoDesk,

    It is possible with FQDN(fully qualified domain name). You can override host name with domain name, you can point the same domain to multiple IP addresses by adding A records with the same name with different IP address for the values.

    Thanks,

  • It's a good suggestion, but in that case I'll be distributing the load. DNS registration with more than one IP uses round robin, correct?

    So I will have problem with TTL and my goal is to have a failover instead of a distribution.

    I liked the idea, thanks for the suggestion. For now I will follow without override.

  • FormerMember
    +1 FormerMember in reply to Gib GoDesk

    Hi Gib GoDesk,

    No, it will not load balance the traffic. SSL Remote VPN user will connect to one IP address only at a time. 

    Thanks,