Issue
The WatchGuard SSLVPN policy allows connections to Mobile VPN with SSL, Access Portal, and BOVPN over TLS. In Fireware 12.11, when you use Policy Manager to save a configuration file, any interface alias for a non-external type network is removed from the WatchGuard SSLVPN policy. This includes the Any-Trusted and Any-Optional interface aliases as well as any specific interface alias for a Trusted or Optional type network.
Workaround/Solution
To allow access to the WatchGuard SSLVPN policy from non-external networks, add the IPv4 address or subnets to the policy instead of the interface aliases.