In a scenario where VPN agent co-exist with ESA, the recommendation is to have ESA bypassed from the VPN agent thus having a direct connection to Broadcom servers. In this instance VPN admin need to know the path to ESA executable to be able to properly bypass ESA.
The recommendation is to bypass the entire installation path of ESA which is the following
Windows: C:\Program Files\Broadcom\Endpoint Security Agent\
Mac: Applications/Endpoint Security Agent.app/