Static routes seems to not forward traffic on GRE tunnel after reboot

Started by Hele, December 30, 2020, 04:29:56 PM

Previous topic - Next topic
Hi everyone,
i'm having a nasty issue here.

I have 2 sites with 2 opnsese fw as gateways.
Now the current conf may be heard as a useless mess, but trust me: there's a reason.

Let's say i have a site A with two lans, one wan, one gre
- igb0 172.115.28.90 (MPLS IP assigned by ISP)
- igb1 192.168.1.0/24
- igb2 172.16.10.0/24
- gre0 10.10.10.1/30 (Leaning on WAN igb0 GW 10.10.10.2)

Let's say i have a site B with one lan and one wan
- igb0 172.115.28.100 (MPLS IP assigned by ISP)
- igb1 172.16.10.0/24
- gre0 10.10.10.2/30 (Leaning on WAN igb0 GW 10.10.10.1)


Now, all stuff works fine without the GRE tunnel, i'm not natting anything cause MPLS net has the needed routes on it in order to route traffic trought my sites. Actually, all is working fine even with the GRE tunnel up and routes that makes traffic flows in it from one fw to the other.

Site A routes when GRE is up:
192.168.0.0/24 via 10.10.10.2

Site B routes when GRE is up:
192.168.1.0/24 via 10.10.10.1
172.16.10.0/24 via 10.10.10.1

Problem is: every morning i found traffic flowing trough MPLS and not in GRE tunnel, notice that GRE tunnel is up and reachable both directions. I'm actually just solving the problem disabling and enabling back the 3 routes writed above: after that i can see all the traffic flow over GRE tunnel as expected. i'm solving the issue, true, but i can't do it every day, and i want to understand where the problem is, or what i'm missing.
Notice that i have a scheduled Cron task that make firewalls to reboot every night, both at 20.00pm
Did you guys ever faced this issue? I'm actually stuck in here, cause i'm not getting where the logical issue can be located.

Thanks in advance for your help.
See ja.
Hele.

du bist hier im deutschen bereich
Internet: Willy.tel Down: 1Gbit/s, UP: 250Mbit/s Glasfaser  |
Router/Firewall: pfSense+ 23.09  |
Hardware: Netgate 6100


poste das mal im englischen bereich, da wird dir auch geholfen
Internet: Willy.tel Down: 1Gbit/s, UP: 250Mbit/s Glasfaser  |
Router/Firewall: pfSense+ 23.09  |
Hardware: Netgate 6100