# During policy installation VPN tunnel between Check Point gateways with Link Selection and RDP fails

**Product**: Site-to-Site VPN  
**Version**: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20  
**Last Modified**: 2024-01-14

## Symptoms

- After policy installation, a VPN tunnel between two Check Point VPN Gateways fails.
- At least one of the VPN Gateways is configured with multiple Link Selection interfaces (High Availability or Load Sharing).
- The VPN Gateways use the Check Point proprietary Route based probing mechanism (RDP packets).

## Cause

After policy installation, the VPN Gateways incorrectly categorize client-to-server and server-to-client connections.

## Solution

This problem was fixed. The fix is included in:

- [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 43  
- [Jumbo Hotfix Accumulator for R81.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) starting from Take 131

If you choose not to upgrade, Check Point can supply a **Hotfix**. [Contact Check Point Support](https://www.checkpoint.com/support-services/.contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.

For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**

Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

#### NOTE

This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.

## Article Properties

**Access Level**: General  
**Status**: Approved by TAC  
**Date Created**: 2023-10-17  
**Last Modified**: 2024-01-14
