Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
blackmetal
New Contributor

PBR Not working for tunnels

Hello,

we have establish GRE tunnel between a mikrotik and fortigate and we can ping both side of tunnel and we establish bgp over tunnel and announce a /24 to mikrotik now everything is ok and when i do packet capture i see incoming packets from GRE tunnel but they can not reach out from fortigate so in route policy i have add this kind of rule:

 

FG1 # show router policy config router policy edit 2 set input-device "LAN" set dst "1.2.3.0/255.255.255.0" set gateway 172.16.206.1 set output-device "GRETUNNEL" next

 

 

but its not working so when my lan users that has 1.2.3.0/24 can not use 172.16.206.1 as next-hop,

any idea how solve this?

 

and there is another note that when i have add my own static ip in static route for example add 9.8.7.6 as static route that set next-hop 172.16.206.1 from 9.8.7.6 i can reach whole network of 1.2.3.0/24

thanks

0 REPLIES 0
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors