FGSP and VRRP routing issue
I'm testing FGSP and VRRP using foritgate VMs. The topology is as follows:
FirewallA (VRRP Master)--------L2VPN--------FirewallB (VRRP Backup)
There are 3 servers:
Server A connects to Firewall A
Server B connects to Firewal B
Server C is in the VRRP domain and will reside in either Firewall
The issue I've observed is When Server C tries to connect to Server B, it fails and the debug flow shows a reverse check failure. I am not sure why this is happening with FGSP enabled, as all other traffic syncs across fine. However, Server B is able to connect to Server C.
When I make Firewall B the VRRP master server C can connect to Server B, but then loses access to Server A. It seems like FGSP isn't synic traffic that's directly conncted to the Fortigates that is acting as VRRP backup. All other transit traffic thats asymmetric FGSP handles it fine.
