- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Policy issue after HA event
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Policy issue after HA event
Hi guys, strange issue that we have now seen twice on two different clusters. After an HA failover, the standby firewall picked up and was allowing traffic, but then when it failed back (we have revert to higher priority set) the gateway then dropped the traffic against the clean-up rule. It wasn't first packet isn't syn or anything like that, it was new connections (we had testers trying) and the drop reason was hitting the drop all rule in last position the policy. The fix was to install policy and it started working immediately again.
The rules that were impacted were simple IP to IP rules. Anyone seen this before?
Gateways are R81.10 T45
- Labels:
-
ClusterXL
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I'm not aware of that issue specifically, but that is a very old JHF take. I would suggest updating it to the current recommended release and testing again, and if the issue still occurs then we'll need TAC to investigate.
