Hello everyone, I am seeing a strange issue that I haven't come across before and I'm not sure how to troubleshoot it. To make it as simple as I can, sometimes traffic going to a specific destination isn't using the defined OSPF route. So for example, the destination is 10.50.0.0/16 and OSPF is enabled on the virtual router using a specific tunnel... when I do a route lookup, it's there and I see successful traffic from the same source zone, using the same application and port to the desired destination using the proper OSPF tunnel. When I do a test routing fib-lookup to that range, it shows it should use that tunnel. However, sometimes it doesn't use the tunnel and traffic ends up in the wrong zone and is denied. I see no static route to this address, and I can't find any PBF involved. Does anyone have any ideas what might be impacting this routing but only on occasion?
... View more