NSD via Gateway configured as a Policy Based VPN will be seen bouncing showing the following:
> Traffic through the NSD could be affected during an extended (few days) period with loss or high latency.
> Tunnel status will be seen as offline and online continuously.
The issue is resolved on its own.
A Non SD-WAN Destination via Gateway (NSD) may intermittently get into a state where the IPsec tunnels flap (are torn down and built back up) constantly.
Addressed in SASE SD-WAN Gateway software release 5.2.0.2(R5202-20230725-GA) or above
Upgrading to a fixed release will bring the VCG down briefly during this period.