We have recently changed our FW to a ZyWall 310 with drastically improved throughput over the old one. However there is a new problem that occurred, we have several L2TP/IPSec clients that connect to the FW from remote. But if two of these tries to connect from a remote office with a NAT-router, only the first can connect, the other one is refused. This is a new issue where most settings are very similar from the previous FW.
It seems that there is some sort of policy conflict when multiple clients connect from the same remote public IP? The only log message that can guide us here is the IKE log:
ISAKMP SA [Default_L2TP_VPN_GW] is disconnected
There is a config "Use Policy Route to control dynamic IPSec rules" in the IPSec VPN connection settings - should this be unchecked?
Thanks for any suggestions with this issue!