Is the VC address the only addresses added to your authentication servers? If not, you can either add the subnet as an an allowed/configured source. Or you can enable dynamic RADIUS proxy on the cluster to proxy the RADIUS requests from the VC address.
I am assuming you are using RADIUS btw ;)
------------------------------
Dustin Burns
Lead Mobility Engineer @Worldcom Exchange, Inc.
ACCX 1271| ACMX 509| ACSP | ACDA | MVP Guru 2022
If my post was useful accept solution and/or give kudos
------------------------------