Hello all,
We have an SRX340 chassis cluster in active/active configuration with a few redundancy groups.
reth1 is comprised of ge-0/0/3 and ge-5/0/3 and configured as a trunk port for VLAN `test`. It is in redundancy group 1.
Vlan `test` is bound to l3-interface irb.100 that has a layer 3 configuration:
`family inet address 10.10.10.1`
irb.100 is part of security zone `trust` that has `host-inbound-traffic system-services ping` configured.
We have link monitoring in place that makes sure that redundancy group 1 fails over to node1 when the link fails.
Failover works as expected and the primary will be assigned to node1 when I e.g. disconnect the ge-0/0/3 link.
However though, pings are not answered when redundancy group 1 is active on the secondary node (node1). As soon as a RE failover (redundancy group 0) occurs and the node1 becomes the primary node in the cluster, pings are being answered again.
Is this by design? It is a major issue for us as we have routed l3 traffic going through these ports and this would basically force us to do a full RE failover when any of the links fail.
Thanks a lot in advance!
Pascal