- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
How possible tow Route policy with same parameter with Hit count > 0 on second one
I found on our FortiWiFi 60E FortiOS v6.4.4 build1803 the follow lines:
As you can see, all traffic from Lan subnet already route to wan2 by policy 39.
So how it's possible Hit-count (>0) for policy 35?
(I clear all Hit-count before i take above snapshot)
- Labels:
-
FortiGate
-
FortiSwitch v6.4
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Do you have any link monitors or sdwan performance checks that are set to remove routes when there is a failure?
If you clear all sessions on the firewall do you see the same behavior? Could be an existing session using wan1 still.
di sys session clear
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks reply me.
Link-monitor. did you mean to Performance SLA screen? No there have nothing.
I check it after I made restart. I supposed it's equivalent to clear sessions.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Could you share the configuration you have from the CLI of the link-monitor?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
yyy-j2 $ show full-configuration system link-monitor
config system link-monitor
end
yyy-j2 $ diagnose sys link-monitor status
yyy-j2 $
yyy-j2 $
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sorry without seeing the full configuration and running some diag debug flow filter commands to see the decisions that are being made by the Fortigate it would be hard to give a definitive answer. Your best bet may be to open a TAC case to help better understand it.