I have configured GRE tunnels with my fortinet cluster which is hosted on aws...the tunnel comes up and works fine for sometime but then goes down randomly...when I failover to the other member it again comes up for a while but then goes down again..
Any help is appreciated
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I didn't use much GRE but the few times I used it I noticed connectivity issue. I recommend to use IPsec tunnel instead.
Hi,
Have you checked system event logs? If you have a GRE keepalives/monitor and if it is failing intermittently then it can cause issues with the GRE tunnel. Usually system log will be something which you can look at first.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-GRE-Tunnel-monitoring/ta-p/197720
Regards,
Shiva
Hello,
First step which you can do is to do a 'diagnose sniffer packet ' for the remote IP address of the GRE tunnel when does not work to see if your device sends and receives packets from remote GRE tunnel.
Second is to check the link-monitor status if it's configured. If you have link-monitor and your FG does an icmp requests , check for DDoS protection on remote end .
Best regards,
Fortinet
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1714 | |
1093 | |
752 | |
447 | |
232 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.