Can someone please clarify what is the behaviour in SRX if a routing change occurs resulting in in egress interface change. My thinking is nothing happens (existing session still used), and the the session need to be cleared in order to route to the new interface.
Thanks in advance.
The existing session will continue to match until it times out. When the timeout occurs if the new interface is in a different zone than the current one, the session will follow the new zone to zone policy. If they are the same zone there is not change in any case.
But the new route will also be immediately used and active for the actual forwarding of traffic to the revised interface. The routing system makes forwarding choices independent of the security policy configuration.