This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Active sessions don't fail back when primary gateway restored

Hardware: XG-125

Firmware version: 17.06

----------------------------

Configuration:

- Gateway 1 - Active, weight 1, connected to a low latency terrestrial connection

- Gateway 2 - Backup, inherit weight from primary, connected to a satellite connection

- Firewall Rule - Primary gateway: Gateway 1 - Backup Gateway: Gateway 2

 

Behavior:

Failover -  Works beautifully. When Gateway 1 fails (pings fail) traffic flips over to Gateway 2. 

 

Failback - When Gateway 1 comes back up, network flows that either failed over to Gateway 2 - or ere already active on Gateway 2 when Gateway 1 came back up DOES NOT failback to Gateway 1.

This is problematic for us because long-lived high-bandwidth flows remain on the satellite network instead of flipping back to the low latency terrestrial connection. Suggestions on how to resolve this and cause flows to failback properly to the primary gateway?



This thread was automatically locked due to age.
Parents Reply
  • Many other firewalls allow a forced break of all sessions, or selected sessions, networks, objects, etc when your failback to the primary connection.  We are seeing this issue with IP phones and wireless access points that connect to cloud servers.  Even rebooting the equipment does not start a new session on WAN1.  To make matters worse, there are no way to down the interface in the GUI.  I've got more failover options in a $200 Zywall. 

Children