To be alerted when this article is updated, click Subscribe to Article in the Actions box
SD-WAN Edge drops return traffic from other SD-WAN locations when Stateful Firewall is enabled.
The firewall rule is configured with an specific VLAN in the source field.
Traffic or flows specified in the firewall will intermittently show hitting the Deny_all rule without explanation or other deny rules.
To workaround this issue if you do not want to upgrade, the source field on the firewall rule can be modified from an specific VLAN to 'Any'.
To be alerted when this article is updated, click Subscribe to Article in the Actions box