Bueno después de muchas vueltas abrí un caso en fortinet.
El tema es simple, se crea una virtual ip y al rato se cae, se vuelve a crear la virtual ip y se recupera, este es el log:
# NOT WORKING
id=13 trace_id=983 func=resolve_ip_tuple_fast line=4299 msg="vd-root received a packet(proto=6, 75.126.39.114:54902->190.221.XX.X:443) from wan2."
id=13 trace_id=983 func=init_ip_session_common line=4428 msg="allocate a new session-0264e7ed"
id=13 trace_id=983 func=get_new_addr line=2395 msg="find SNAT: IP-10.10.16.13(from IPPOOL), port-443"
id=13 trace_id=983 func=_pre_route_auth line=99 msg="pre_route_auth check fail(id=0), drop"
id=13 trace_id=984 func=resolve_ip_tuple_fast line=4299 msg="vd-root received a packet(proto=6, 75.126.39.114:59763->190.221.XX.X:443) from wan2."
id=13 trace_id=984 func=init_ip_session_common line=4428 msg="allocate a new session-0264ed63"
id=13 trace_id=984 func=get_new_addr line=2395 msg="find SNAT: IP-10.10.16.13(from IPPOOL), port-443"
id=13 trace_id=984 func=_pre_route_auth line=99 msg="pre_route_auth check fail(id=0), drop"
id=13 trace_id=985 func=resolve_ip_tuple_fast line=4299 msg="vd-root received a packet(proto=6, 75.126.39.114:59763->190.221.XX.X:443) from wan2."
id=13 trace_id=985 func=init_ip_session_common line=4428 msg="allocate a new session-0264ed96"
id=13 trace_id=985 func=get_new_addr line=2395 msg="find SNAT: IP-10.10.16.13(from IPPOOL), port-443"
id=13 trace_id=985 func=_pre_route_auth line=99 msg="pre_route_auth check fail(id=0), drop"
# WORKING
id=13 trace_id=999 func=resolve_ip_tuple_fast line=4299 msg="vd-root received a packet(proto=6, 75.126.39.114:45509->190.221.XX.X:443) from port6."
id=13 trace_id=999 func=init_ip_session_common line=4428 msg="allocate a new session-0264faae"
id=13 trace_id=999 func=get_new_addr line=2395 msg="find SNAT: IP-10.10.16.13(from IPPOOL), port-443"
id=13 trace_id=999 func=fw_pre_route_handler line=175 msg="VIP-10.10.16.13:443, outdev-port6"
id=13 trace_id=999 func=__ip_session_run_tuple line=2523 msg="DNAT 190.221.XX.X:443->10.10.16.13:443"
id=13 trace_id=999 func=vf_ip4_route_input line=1603 msg="find a route: gw-10.10.16.13 via port7"
id=13 trace_id=999 func=fw_forward_handler line=647 msg="Allowed by Policy-348:"
id=13 trace_id=1000 func=resolve_ip_tuple_fast line=4299 msg="vd-root received a packet(proto=6, 75.126.39.114:45509->190.221.XX.X:443) from port6."
id=13 trace_id=1000 func=resolve_ip_tuple_fast line=4333 msg="Find an existing session, id-0264faae, original direction"
id=13 trace_id=1000 func=ipv4_fast_cb line=50 msg="enter fast path"
Estoy esperando a ver que dice, pero si alguien sabe que significa esta linea:
id=13 trace_id=985 func=_pre_route_auth line=99 msg="pre_route_auth check fail(id=0), drop
se agradeceria
