Installing Connect Tunnel Client disrupts the Client Host network

Description

Uninstalling an existing Connect Tunnel Client installation while "Restrict network access to VPN only" is enabled will cause subsequent installations of Connect Tunnel Client to disrupt the network access on the client host computer.

Cause

The issue occurs when the Secure Mobile Access appliance option "Restrict network access to VPN only" is enabled
- This option restricts network access on client interfaces
- When this setting is enabled Connect Tunnel Client should not be uninstalled

Resolution

To uninstall the Connect Tunnel Client "Restrict network access to VPN only" must be disabled in the config
- User should connect to the User VPN once so the option is disabled on client
- Then we can uninstall the client successfully

When the Client Host is already in a state where internet access is blocked
- We have to do some registry cleanup to restore the network access

Restore Network Access:
- Open registry editor, and navigate to Computer\HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BFE\Parameters\Policy\Persistent\Provider
- Delete DWORD value with GUID {9DEA27BC-1C38-4052-8265-36A49276FB82}
- Reboot the Client Host

Related Articles

  • SMA1000: How to Enable 10Gb SPF+ Interfaces on SMA7210
    Read More
  • SMA1000: Default Port and URL Requirements
    Read More
  • SMA1000: Impact of Windows RDP Security Update (April 2026)
    Read More
not finding your answers?