- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
09-25-2014 01:02 AM
HULK,
your answer is helpful but please correct me if I'm wrong or misunderstand the configuration:
Fist, a citation: " This request can be received either by Split tunnel on the physical interface ethernet 1/1, or by Full tunnel on the loopback interface by NATing 88.88.88.88:4501 to 1.1.1.1:4501. Both Split and Full tunnel cannot receive the IPSec request."
If I will configure our Portal/Gateway with the loopback solution, the authentication against the gateway is still necessary with SSL (port doesn't matter). Ok, my clients will connect with IPSEC but the SSL failover mechanism configured at the agent is still enable and also possible, because you have to authenticate against the gateway with SSL.
So in my opinion there is no way to disable a SSL tunnel, because of the SSL failover mechanism and authentication against the gateway.
Please correct me, if I'm wrong!