I have been trying to get async routing working for some time now, and at one point i thought I had a Eureka moment when I found that turning off the external cache in conntrackd allowed two routers to function in active/active ECMP status.
For sometime it was working however last February I updated to see if some other issues improved and it’s never been the same since, even when interfaces are in the same zone. The network works just fine when only one router is on, however I’m constantly seeing high packet loss or host unreachable alerts in my zabbix session.
Turning one router off solves the issues for as long as the router is off, and this does not matter which router is off at a time. Allowing “invalid” state packets also solves the issue, but reduces security.
Can I get a definitive answer if ECMP networks are expected to work with the firewall/zone policy enabled, or is this not a considered usecase with Vyos’s configuration?
Current build: 1.4-rolling-202206080217