Hello all,
I had trouble with the isp redundancy on a production environnement, because it didn't switched to the backup link when the main link failed.
In order to troubleshoot this issue, I created the following virtual lab, but I can't make it work as expected.
The ISP failover is configured as following :
And Access/ThreatPrevention Policy were installed on the cluster.
Now, if I shutdown the link eth0 from the Main Router, like this
And if I tcpdump icmp traffic on the main router, I can see the icmp response "unreachable" to the gateway which is testing the link as following :
However, the default gateway don't change on the active cluster member. Did I missed something ?
-> I can't ping the internet from internal lan
-> I can't ping the internet from the active gateway, and the default gateway do not change automaticaly.
and if I try to make the isplink down it says no isp link :
cpstat fw :
Thank you for reading.
Best regards,