When an EdgeConnect appliance has access to the Internet using a single internet service provider (ISP), the appliance can create IPSec tunnels to a primary Netskope Point of Presence (POP) and a secondary Netskope POP, as shown in the following figure.
![]() |
In this scenario, the tunnel to the primary POP carries all traffic unless the tunnel or POP become unavailable. In this case, traffic will automatically failover to the secondary POP.