Virtual Wan Site to Site VPN Tunnel stops working after a couple days
Hello, i have a VPN site-to-site tunel between virtual wan and a fortigate appliance.
Both sides show the tunel as UP and Connected, traffic flows in both directions and after a couple days it stops.
Local Network: 172.24.8.0/21
Remote Network: 172.17.16.0/22
1 - We have Virtual Hub and Azure Firewall with routing intent enabled for internet and private traffic
2 - packet capture confirms that packets are coming from fortigate and firewall logs show the same traffic being Allowed into network rules but i can´t see the traffic going back to vpn gateway.
- Inbound Traffic
Traffic from 172.17.19.127 (remote) to 172.24.11.4 (local) port 5060 (sip)
Packet capture:
Firewall Network Rule Hit:
- Outbound Traffic
Traffic from 172.24.13.16 (local) and 172.24.9.4 (local) to 172.17.19.127 port 5060
At the same time frame the packets never reach the vpn gateway:
Traceroute:
The only way to get the traffic back is reseting the VPN Gateway, as i already said the traffic goes back to normal for a couple days and then stops again.