Wireguard VPN - Specify ISP Gateway
-
Hello -
Using an edge switch and some VLANs, I set up dual ISP gateways with my Netgate 2100. I have a Wiregard client connection via a third-party service.
I've made interfaces and set up gateway groups with policy routing. All of that is working well with my LAN devices. I have two internet connections - VDSL/PPPoE (slow/reliable) and cable/DHCP (faster/unreliable). VDSL is the default gateway only because it (almost) never goes down. I have media devices that use the cable connection only and I don't mind if they get cut off by my cable ISP occasionally. That's what the policy routing is for.
My Wireguard VPN always goes out via VDSL. Since the VPN traffic is not essential, I would prefer to have it always go out the cable connection, thereby keeping traffic off my primary ISP. However, I don't see anywhere in the Wireguard configuration where I can specify a WAN gateway. Is it possible to set it so that it only goes out one specific ISP gateway (and just drops the VPN connection entirely if that ISP is down)?
Thank you.
-
@Lugie No. You will have to use OpenVPN for that fine control.
-
Thank you for the confirmation. Hopefully this option will turn up in a future version of Wireguard.
-
I think it's possible. At least in the part that the VPN tunnel would be installed through a specific provider. It is necessary to register in static routes through which gateway the IP of the VPN provider is available.
It's a pity you can't register a group of gateways in static routes, then your problem would be solved completely