Routing traffic from single host through VPN



  • Hi all,

    I know this topic has been discussed several times throughout this forum, but I'm having an issue that I can't seem to fix.  I am trying to route all traffic from a specific internal host through a VPN and prevent it from going through the WAN gateway, should the VPN be down.  If I set my LAN rule to drop or reject, all outbound traffic from the host is blocked, however, if I set it to Pass (using the options set below), it goes through the WAN and not the VPN.

    Please let me know if you need additional information and THANK YOU in advance!

    Here is my setup:

    • VPN is setup as gateway

    • Lan Rule:
        Action: Pass
        Interface: Lan
        Address Family: IPv4
        Protocol: any
        Source: Single Host: 192.168.3.8
        Destination: any
        Advanced Settings:
          Tag: NO_WAN_EGRESS
          Gateway: VPNGW - xxx.xxx.xxx.xxx

    • Floating Rule:
        Action: Block
        Quick: Apply the action immediately on match (checked)
        Interface: Lan
        Direction: any
        Address Family: IPv4+IPv6
        Protocol: any
        Source: any
        Destination: any
        Advanced Options:
          Tagged: NO_WAN_EGRESS

    • NAT Outbound Rules (Hybrid OUtbound NAT rule generation enabled):
        Interface: VPNINT
        Protocol: Any
        Network: 192.168.3.0/24
        Destination: any
        Translation Address: Interface Address


Log in to reply