We have implemented two SA 6500 (6.5R3.1) Juniper Boxes in our environment. With around 700 users logged into till now in a month, some of the users are facing time-out issues.
On checking the logs couldn't see any of below that would generally give a time-out.
1. Change of ISP Remote Address.
2. Session impersistance...session going from one Box to another.
3. User logged out.
4. Idle time expired.
5. session time expired.
Could i be helped in knowing what else could go wrong during a session.
Most of them are falling back from ESP to SSL connection.
If an external load balancer is used, persistence must be enabled on the load balancer for user access to function correctly. This ensures that all the requests from a user are directed to the same IVE. This persistence can be based on source IP or destination source, depending on the load balancer used.
Refer: http://kb.pulsesecure.net/KB17848 for more details.