I wanted to share with Vyos community some weird behavior we have randomly in a vyos cluster.
I have some vyos VRRP clusters in version 1.2.6-S1, with a huge ruleset (more than 3000 rules). Sometimes it had happened that some random rules are not working properly (traffic dropped by vyos of some IPs which should be allowed by policy, or vice versa).
This problem is solved after rebooting vyos, and only happens when vyos is master (when switching service to “standby” node, ruleset works fine.
Does this behavior sound familiar to somebody? Could it be a bug of v 1.2.6-S1? Is just bad luck after a commit of iptables pushing?
Thanks and kind regards to all!