Packet duplication not done in session return packets
FortiGate 7.4.3 using both VM and 60F platforms.
I set up two tunnels in a zone with duplication=force outbound and de-duplication enable inbound. On the origination side, outbound packets are duplicated on both tunnels and are de-duplicated on receiving end. This works both ways. However, if I ping or try a TCP connection, the response packets sent from the other end are not duplicated.
I ran the Debug Flow and it clearly states in the log if it is duplicating or not, and for established sessions for "return" traffic it always picks the input interface of the session to send the data to, and does not take the extra step to duplicate to the other zone member.
Is this by design, a bug, or a configuration error? I scoured config flags to see what is related to duplication and found nothing there.
