Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Exonix
Advisor
Jump to solution

Policy-based routing interrupts non-rule hosts

Hello everyone,

we have got a very strange case. Management Server and Security Gateway (cluster) are R81.10

there is a Rule: a "host group" to "public_internet" - accept, rule number 12. Very common rule.

rule12.png

policy-based routing: if rule number is 12 - use Table 2, which routes all traffic via an interface

pbr1.png

It works, but! There are two hosts, and as long as this PBR is enabled, they cannot communicate with each other. I see that the traffic came to one firewall interface (source server is connected to this interface), but didn't leave the other (target server is connected to the second interface). The hosts are not members of the group in the Rule 12! As soon as I delete the PRB - everything works again. What is wrong and how to fix it?

The Table PRBZ is used by another PRB with other Rules - but it doesn't affect the hosts:

rule10.png

Thank you in advance.

0 Kudos
2 Replies
This widget could not be displayed.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Wed 01 May 2024 @ 02:00 PM (EDT)

    South US: HTTPS Inspection Best Practices

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Wed 01 May 2024 @ 02:00 PM (EDT)

    South US: HTTPS Inspection Best Practices

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events