Hi,
We have an mpls line from HQ to a branch office. We had on both sites fortigates and worked good. On the branch office we replaced the fortigate with a MX67 and now we are having problems with the traffic that comes from the HQ to the branch office. The mpls line terminates in internet port in the MX67. So all the trafic from the MX is sent through the mpls to the HQ firewall. We can ping the networks on the HQ from the MX67 internal vlans, but doing it from the HQ to the branch offices MX the ping never respond back. I know it might have something with the NAT on the internet port on the MX but I need to be sure if someone has had the same issue.
When I look at the route table I see a default route 0.0.0.0/0 through the wan interface. It worth mentioning that I have not created any static route on the MX!
BR