Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
itc
New Contributor II

GRE Tunel not working after 7.4.1 > 7.4.3

Hi

My GRE tunel connection is not working after upgrade FortiOS from 7.4.1 > 7.4.3.

Forti shows, that connection is UP but I have no access  to network. 

Checked policies, diagnosed connection and everything looks fine.

Any idea what to check next? How to monitor?

 

Best regards,

Rafal

27 REPLIES 27
kaskipl
New Contributor II

Thank you for your response @AEK .

 

This is what I did in one of my attempts to solve this problem.

Unfortunately, adding a static route doesn't change anything.

 

Regards

Kangming

Thank you, Kaskipl.

 

Are both ends of GRE site FGT-VM?

 

If you could share your configuration file, it would be conducive for us to reproduce the issue.  My email is: kmliu@fortinet.com

Thanks

Kangming

kaskipl
New Contributor II

Hello @Kangming 

 

Unfortunately, I don't know which vendor my telecommunications operator uses.

If it's important information, I'll try to get it

 

I will try to generate a ticket on Monday.

I understand that the objects related to this tunnel are enough from the configuration?

 

Regards

Glennonline
New Contributor II

I'm having the same issue, is it worth the effort to create a ticket?

pginete
Staff
Staff

Hi Team,

 

Good day! If the traffic over GRE tunnel stops working after upgrading to 7.4.3, kindly run the command below three times.

 

diag sys gre list

 

If the collisions of the GRE tunnel are increasing, then it matches bug 987501.

 

You may check this KB https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-GRE-traffic-stops-working-after-a-fi...for workaround and solution.

 

Thank you.

Thanks,
Paulo Ginete
kaskipl
New Contributor II

Has anyone already done UPG to 7.4.4?

It helped ?

 

Regards

Glennonline
New Contributor II

I did the upgrade and it fixed the issue, it's also mentioned in the release notes:
https://docs.fortinet.com/document/fortigate/7.4.4/fortios-release-notes/289806/resolved-issues

987501 On FortiGate, the GRE tunnel stops sending traffic after an upgrade.

Still don't understand how they didn't find this in internal testing.

kaskipl
New Contributor II

Thank you very much for your help.

Labels
Top Kudoed Authors