Hi ,
We are running MXs in NAT mode under the 15.44 code ( yeah I know. )
On some sites we have machines that have issues getting IP from DHCP.
We can see the MX dropping thoses packets with the event log :
![RaphaelL_0-1677003224462.png RaphaelL_0-1677003224462.png](https://community.meraki.com/t5/image/serverpage/image-id/28423iFC9A2341B6E9389F/image-size/medium?v=v2&px=400)
![RaphaelL_0-1677003087056.png RaphaelL_0-1677003087056.png](/t5/image/serverpage/image-id/28422i51324E1D8ED770A8/image-size/medium?v=v2&px=400)
Documentation states : Special exceptions are made for DHCP discover messages and for traffic used to synchronize information between MXs in a NAT warm spare configuration.
https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/IP_Source_Address_Spoofing_Protecti...
Has anyone ever encountered issues with RPF ? We have 1000++ networks , I'm pretty sure that I can find couple other examples.
Yes upgrading to MX17 or MX18 is planned , but I don't see any mention of that behavior in the patch notes.
EDIT :
This is a branch. The MX is configured to relay DHCP packets to a DHCP server in our DC over the S2S VPN. Setup is working fine for 99.9999% of our clients/workstation except some which seems to be sourcing the requests with an IP different from 0.0.0.0 as per the RFC.
Thanks ,