I've configured the anyconnect "Always On" feature in the profile editor.
I've allowed disconnect.
I've allowed the fail to to "open".
But as soon as I click the disconnect button i lose all network activity.
I thought fail "open" would allow normal network connectivity.
--------------------------------------------------------------------------------------------------
<AlwaysOn>true
<ConnectFailurePolicy>Open
<AllowCaptivePortalRemediation>false
<CaptivePortalRemediationTimeout>5</CaptivePortalRemediationTimeout>
</AllowCaptivePortalRemediation>
<ApplyLastVPNLocalResourceRules>false</ApplyLastVPNLocalResourceRules>
</ConnectFailurePolicy>
<AllowVPNDisconnect>true</AllowVPNDisconnect>
</AlwaysOn>
--------------------------------------------------------------------------------------------------