Local-in Policy OSPF Issue
Hi ,
We have encountered an issue with FortiGate devices running version 7.4.7, which we recently upgraded to from 7.2.7. When establishing an OSPF session, the OSPF adjacency fails to come up if the required local-in policy is not present. However, even after creating the local-in policy, the adjacency does not establish until we run the command diagnose firewall iprope flush.
The OSPF process and interface configuration appear correct.
OSPF Hello packets are being sent, but no neighbors are learned.
From the debug flow logs, I can see multiple OSPF Hello packets being dropped with the message:
iprope_in_check() check failed on policy 6, drop
Checked known issues for 7.4.7 and can't find any related on this issue.
https://docs.fortinet.com/document/fortigate/7.4.7/fortios-release-notes/236526%E0%A4%95%E0%A5%8B
For your advise. TIA :)
