Hello,
I need to send specific traffic (PBRs) through a VPN (IPSEC, site-to-site).
The traffic is intended for a subnet (/24) so the IP of the device/server is not an option.
What should the gateway be? 0.0.0.0?
Thanks
Anyone have an idea?
usually when routing traffic into a VPN tunnel i don't use a gateway IP. so 0.0.0.0 indeed.
did you use an interface based VPN?
Yes, I'm using an interface based VPN.
Ok, thanks.
Later I'll setup a lab and post here my results
Hello,
After some testing, I've conclude that for the PBR to work the gateway must be the external IP of the VPN (public IP).
Cheers!
User | Count |
---|---|
2116 | |
1187 | |
770 | |
451 | |
344 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.