Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Route traffic for certain domains over WAN instead of VPN not working

    Scheduled Pinned Locked Moved Routing and Multi WAN
    2 Posts 1 Posters 345 Views 1 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T Offline
      Tikiyetti
      last edited by Tikiyetti

      I set up an ExpressVPN Gateway to route everything over VPN which is working. Unfortunately a few domains don't play nicely with shared IPs and will frequently prompt me for captchas, or simply not load.

      To workaround this I created a firewall alias grouping together such domains:

      f4dd7959-a2f9-4e75-b274-6e1723a967b2-image.png

      I then added a firewall rule to my LAN interface to have traffic destined for the domains to use the WAN interface instead of the ExpressVPN one:

      27434efd-0d75-4fba-b390-edf669205663-image.png

      1a1b4771-05b9-4c6b-9811-10c759311a0b-image.png

      wan.png

      What's interesting is that the rule right below it, Networks_to_Bypass_VPN, works just fine. I've added an explicit ip address to that alias and it is properly routed through WAN. This only fails when I try to specify domains like www.netflix.com etc...

      Thanks,
      ~Klaus

      1 Reply Last reply Reply Quote 0
      • T Offline
        Tikiyetti
        last edited by

        Hmm... should I have asked this question in a different category or does my question just make no sense? Seriously not sure what's wrong with my configuration. Has anyone else here managed to route traffic through different WANs based on destination domain?

        Thanks,
        ~Klaus

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.