so if I switch on 7.20.4 from:
i stripped the routing tables they containing only a couple more vrf’s and and vlans local.
[admin@mam-hh-gwax3] /ip/vrf> /ip/route/print detail
Flags: D - dynamic; X - disabled, I - inactive, A - active; c - connect, s - static, r - rip, b - bgp, o - ospf, i - is-is, d - dhcp, v - vpn, m - modem, y - bgp-mpls-vpn;
H - hw-offloaded; + - ecmp
0 Xs dst-address=0.0.0.0/0 routing-table=main gateway=100.64.0.1@mam-hh-star-vrf distance=10
1 Is dst-address=0.0.0.0/0 routing-table=main gateway=192.168.132.1@UP-VODA-vrf immediate-gw="" distance=20 scope=30 target-scope=10
DAd dst-address=0.0.0.0/0 routing-table=main gateway=192.168.132.1 immediate-gw=192.168.132.1%vlan132-UP-VODA distance=10 scope=30 target-scope=10
vrf-interface=vlan132-UP-VODA
DAc dst-address=192.168.128.0/24 routing-table=main gateway=vlan128-MAM-HH immediate-gw=vlan128-MAM-HH distance=0 scope=10 target-scope=5
local-address=192.168.128.3%vlan128-MAM-HH
DAc + dst-address=192.168.129.0/24 routing-table=main gateway=vlan129-MAM-HH-DMZ immediate-gw=vlan129-MAM-HH-DMZ distance=0 scope=10 target-scope=5
local-address=192.168.129.3%vlan129-MAM-HH-DMZ
DAc + dst-address=192.168.129.0/24 routing-table=main gateway=vrrp129-MAM-HH-DMZ immediate-gw=vrrp129-MAM-HH-DMZ distance=0 scope=10 target-scope=5
local-address=192.168.129.1%vrrp129-MAM-HH-DMZ
D b dst-address=192.168.129.0/24 routing-table=main gateway=192.168.128.2 immediate-gw=192.168.128.2%vlan128-MAM-HH distance=200 scope=40 target-scope=30
D b dst-address=192.168.132.0/24 routing-table=main gateway=192.168.128.2 immediate-gw=192.168.128.2%vlan128-MAM-HH distance=200 scope=40 target-scope=30
DAc + dst-address=192.168.132.0/24 routing-table=main gateway=vlan132-UP-VODA immediate-gw=vlan132-UP-VODA distance=0 scope=10 target-scope=5
local-address=192.168.132.90%vlan132-UP-VODA
DAc + dst-address=192.168.132.0/24 routing-table=main gateway=vlan132-UP-VODA immediate-gw=vlan132-UP-VODA distance=0 scope=10 target-scope=5
local-address=192.168.132.34%vlan132-UP-VODA
all good then I enable
/ip vrf
0 name="UP-VODA-vrf" interfaces=vlan132-UP-VODA,vrrp132-UP-VODA
then the connectivity is still there and dns stops
[admin@mam-hh-gwax3] /ip/vrf> /ip/route/print detail
Flags: D - dynamic; X - disabled, I - inactive, A - active; c - connect, s - static, r - rip, b - bgp, o - ospf, i - is-is, d - dhcp, v - vpn, m - modem, y - bgp-mpls-vpn;
H - hw-offloaded; + - ecmp
0 Xs dst-address=0.0.0.0/0 routing-table=main gateway=100.64.0.1@mam-hh-star-vrf distance=10
1 As dst-address=0.0.0.0/0 routing-table=main gateway=192.168.132.1@UP-VODA-vrf immediate-gw=192.168.132.1%vlan132-UP-VODA distance=20 scope=30 target-scope=10
DAc dst-address=192.168.128.0/24 routing-table=main gateway=vlan128-MAM-HH immediate-gw=vlan128-MAM-HH distance=0 scope=10 target-scope=5
local-address=192.168.128.3%vlan128-MAM-HH
D b dst-address=192.168.128.0/24 routing-table=main gateway=192.168.128.2 immediate-gw=192.168.128.2%vlan128-MAM-HH distance=200 scope=40 target-scope=30
DAc + dst-address=192.168.129.0/24 routing-table=main gateway=vlan129-MAM-HH-DMZ immediate-gw=vlan129-MAM-HH-DMZ distance=0 scope=10 target-scope=5
local-address=192.168.129.3%vlan129-MAM-HH-DMZ
DAc + dst-address=192.168.129.0/24 routing-table=main gateway=vrrp129-MAM-HH-DMZ immediate-gw=vrrp129-MAM-HH-DMZ distance=0 scope=10 target-scope=5
local-address=192.168.129.1%vrrp129-MAM-HH-DMZ
D b dst-address=192.168.129.0/24 routing-table=main gateway=192.168.128.2 immediate-gw=192.168.128.2%vlan128-MAM-HH distance=200 scope=40 target-scope=30
DAb dst-address=192.168.132.0/24 routing-table=main gateway=192.168.128.2 immediate-gw=192.168.128.2%vlan128-MAM-HH distance=200 scope=40 target-scope=30
DAd dst-address=0.0.0.0/0 routing-table=UP-VODA-vrf gateway=192.168.132.1@UP-VODA-vrf immediate-gw=192.168.132.1%vlan132-UP-VODA distance=10 scope=30 target-scope=10
vrf-interface=vlan132-UP-VODA
DAc + dst-address=192.168.132.0/24 routing-table=UP-VODA-vrf gateway=vlan132-UP-VODA@UP-VODA-vrf immediate-gw=vlan132-UP-VODA distance=0 scope=10 target-scope=5
local-address=192.168.132.90%vlan132-UP-VODA@UP-VODA-vrf
DAc + dst-address=192.168.132.0/24 routing-table=UP-VODA-vrf gateway=vlan132-UP-VODA@UP-VODA-vrf immediate-gw=vlan132-UP-VODA distance=0 scope=10 target-scope=5
local-address=192.168.132.34%vlan132-UP-VODA@UP-VODA-vrf
there are no filter rules no nat, no filter, no mangle…..
this is the package trace
[admin@mam-hh-gwax3] /ip/vrf> /tool/sniffer/quick interface=vlan132-UP-VODA port 53
Columns: INTERFACE, TIME, NUM, DIR, SRC-MAC, DST-MAC, SRC-ADDRESS, DST-ADDRESS, PROTOCOL, SIZE, CPU
INTERFACE TIME NUM DIR SRC-MAC DST-MAC SRC-ADDRESS DST-ADDRESS PROTOCOL SIZE CPU
vlan132-UP-VODA 5.597 1 -> 04:F4:1C:1D:33:17 DC:15:C8:2C:FD:95 192.168.129.88:51574 1.1.1.1:53 (dns) ip:udp 179 0
vlan132-UP-VODA 6.908 2 -> 04:F4:1C:1D:33:17 DC:15:C8:2C:FD:95 192.168.129.88:52145 1.1.1.1:53 (dns) ip:udp 85 1
vlan132-UP-VODA 15.302 3 -> 04:F4:1C:1D:33:17 DC:15:C8:2C:FD:95 192.168.129.88:51359 8.8.8.8:53 (dns) ip:udp 179 0
vlan132-UP-VODA 18.24 4 -> 04:F4:1C:1D:33:17 DC:15:C8:2C:FD:95 192.168.129.88:60403 1.1.1.1:53 (dns) ip:udp 84 2