It is a GRE tunnel, configured in Aruba Central (VPN), it does not pass through the firewall, and the configuration is the same in all 3 IAP's.
The routing profile is the same.
Gre primary, type, and the gre per-ap-tunnel setting is ok; the debug cloud server is the same;
Show ip route, datapaht route, and vpn are the same.
The only configurations that diverge are in the image show summary suport(VC = Left side // IAP with problem = Right side).
I also noticed that the Support Connection Status field is connected in the VC, but in the 2 IAP's it is not.