I have had a problem where my TMG servers where having their L2TP ports switched back to the routing every time they rebooted or TMG settings where changed, turns out that it was a setting in the TMG server causing the problem. In the Remote Access Policy (VPN) section, there is "Verify VPN Properties" option, I clicked that and saw that L2TP was not checked. So I checked it, and poof, now they get set as RAS/Routing. But, that only fixed one of the 2 servers. The problem on the second server ha