Hello,
I need to send specific traffic (PBRs) through a VPN (IPSEC, site-to-site).
The traffic is intended for a subnet (/24) so the IP of the device/server is not an option.
What should the gateway be? 0.0.0.0?
Thanks
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Anyone have an idea?
usually when routing traffic into a VPN tunnel i don't use a gateway IP. so 0.0.0.0 indeed.
did you use an interface based VPN?
Yes, I'm using an interface based VPN.
Ok, thanks.
Later I'll setup a lab and post here my results
Hello,
After some testing, I've conclude that for the PBR to work the gateway must be the external IP of the VPN (public IP).
Cheers!
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.