FGT fails to choose correct route (redundant VPN tunnels)
Hello, guys,
So, I ran into this weird issue. I have two redundant tunnels on FGT600E, running 6.0.8. Config of both tunnels is identical, only remote gateway setting differs. Static routes are configured with different distance, routes to primary tunnel have distance of 10, routes to secondary tunnel have distance of 20. The problem is that when primary tunnel goes down, Fortigate still uses the route and doesn't use secondary tunnel's routes, and no traffic is routed through secondary tunnel. And, of course, when packets come through the secondary tunnel from the other side, they get dropped because of reverse path check fail. Anyone heard of a bug here? Any suggestions? I tried to play with priority as well, the result is the same.
