Spoofing group calculated with subnets from wrong interface

Question asked by Kaspars Zibarts on Feb 15, 2018
Latest reply on Feb 27, 2018 by Vladimir Yakovlev

Before I jump and raise an SR, just wondering if anyone has seen it (don't seem to find any relevant SK)

One of our admins did a straight forward routing change on a plain firewall cluster (R80.10), single route. Then did "get interfaces with topology" and the whole hell broke lose at that site.

At this stage I can see from audit logs that auto topology applied all subnets from interface "X" to spoofing group on interface "Y". So the only affected interface is "Y" (since it has full list of wrong subnets). Interface "X" has correct own topology as per static routes. Or I can say contents of spoofing groups for X and Y interfaces is 100% identical at the moment.

The only correlation between two is that they having exactly opposite interface element indexes in cluster member object on corresponding gateways.

Really strange. If anyone can chip in idea would be great.