FGT1000D dropping sessions?
Hi,
I segmented our network using FGT1000D (running 5.6) in HA act-pass mode. The FGT act as routers for all different vlans (all vlan interfaces are created under portA) and policies are in place to allow or not traffic from one vlan to the other. As of now, all vlans can talk to all vlans. No UTM in place also. The 2 FGTs are connected to 2 Brocade VDX switches in a VCS cluster using Brocade TwinAX cables on 10Gbps ports. These Brocades were doing the routing before moving to the Fortigates. I haven't seen errors on the interfaces.
Since the cutover, it seems that TCP sessions gets dropped between vlans. ICMP still works though. We had an issue this morning when a server in a vlan stopped passing traffic to another server in a different vlan. I was able to ping a server from the other and vice-versa. The session eventually came back up after a few minutes.
Another issue with clients connecting to a server. I moved the server to the same vlan as the clients and no more issues...
I'm really struggling on this one...any ideas?
