Hot!PBR not working

Author
elyes
New Member
  • Total Posts : 5
  • Scores: 0
  • Reward points: 0
  • Joined: 2015/10/07 12:08:00
  • Status: offline
2017/08/12 04:56:25 (permalink)
0

PBR not working

Hello guys,
 
I have an issue with a PBR. I don't think it is working or may be I didn't configured it well.
I have a route pointing to subnet 10.0.0.0/8 via port1 and I have an out of band mgmt interface mgmt1 192.168.1.1 that should directly be reachable from a machine in the subnet 10.0.0.0/8 (please see the image).
 
I see ping from 10.1.1.1 to mgmt1 but the packet are dropped "reverse path check fail".
I created this PBR : 
incoming int : mgmt1
src : 192.168.1.1
dst : 10.1.1.1
outgoing int : mgmt1 (it should go back from the same interface)
gateway : 192.168.1.254
 
I still have the reverse path check fail :(
 
any ideas? thank

Attached Image(s)

#1

2 Replies Related Threads

    MikePruett
    Platinum Member
    • Total Posts : 667
    • Scores: 13
    • Reward points: 0
    • Joined: 2014/01/08 19:39:40
    • Location: Montgomery, Al
    • Status: online
    Re: PBR not working 2017/08/12 19:11:59 (permalink)
    0
    Are there mutliple routes to the network? Could return traffic be taking an alternate route?

    Mike Pruett
    Fortinet GURU
    #2
    Fullmoon
    Platinum Member
    • Total Posts : 711
    • Scores: 2
    • Reward points: 0
    • Joined: 2010/08/02 18:02:10
    • Status: offline
    Re: PBR not working 2017/08/13 23:08:15 (permalink)
    0
    based on the attached diagram, correct firewall policies (mgmt-port1, port1-mgmt) could handle the traffic to the right path.

    Fortigate Newbie
    #3
    Jump to:
    © 2017 APG vNext Commercial Version 5.5