Hi All,
We have FG FW 601E, and our FG FW is connected to two upstream routers, R1 & R2, and FG will get the same route from both routers, but R1 has some local preference value. When R1 is down, FW is considering the R2 route as primary, and when R1 is up, it should take R1 as primary, but it still considers the R2 route as primary. Our N/W team has done all the configuration on both routers.
Hence, kindly check and help us to resolve this issue.
Regards,
Thoubik Ahamed P.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
# get router info bgp summary
# get router info bgp neighbors
# get router info bgp network x.x.x.x =========x.x.x.x destaintion network
# get router info bgp all
# get router info routing-table database
# get router info routing-table details 0.0.0.0
# get router info bgp network
# get router info routing-table all
# get router info routing-table deatils x.x.x.x =========x.x.x.x destaintion network
can you please provide the above commands output to the ticket
Created on 03-18-2024 02:14 AM Edited on 03-18-2024 02:15 AM
Also, please confirm if you are using HA setup and check override enabled or not, please run the below commands output to the ticket.
config system ha
sh full
Hi Thoufik
Please try review the route selection process below in case you missed something.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-BGP-route-selection-process/ta-p/195932
Created on 03-18-2024 02:43 AM Edited on 03-18-2024 02:52 AM
By default, the highest local preference value will be taken when the packet goes out and the default for LP 100.
As per your update, the upstream device you are router, and if it's in Cisco, please check if you are using a redundancy protocol like (HSRP or VRRP) and in the you can check whether you are enabling the preempt or not.
For preempt we will use the when the primary goes down, then secondary will take over, later the primary comes up and needs to take the same primary position for that we enabled preempt.
-If you are using HSRP, please check whether preempt is enabled or not, by default it is enabled.
-in VRRP by default preempt is enabled
By default, the highest local preference value will be taken when the packet goes out and the default for LP 100.
As per your update, the upstream device the are routers, and if it's in Cisco, please check if you are using a redundancy protocol like (HSRP or VRRP) and in the you can check whether you are enabling the preempt or not.
For preempt we will use the when the primary goes down, then secondary will take over, later the primary comes up and needs to take the same primary position for that we enabled preempt.
-If you are using HSRP, please check whether preempt is enabled or not, by default it is enabled.
-in VRRP by default preempt is enabled
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.