Failover through PBR vs. static route
-
I have one WAN (tier 1) and WG site-to-site gateway (tier 2) setup in a failover routing group. I also have static routes for the far end tunnel networks to use the WG s2s gateway.
When the LAN firewall rule is setup to use the default gateway (which is the WAN), the static route takes effect as expected. I can reach IP's in the far end tunnel networks just fine. However, when I modify the rule to use the failover routing group as the gateway, I'm unable to reach the same networks even though the routing table still shows that the static routes are still in place.
Why?
-
Nevermind! My situation is literally explained here:
https://docs.netgate.com/pfsense/en/latest/multiwan/policy-route.html#bypassing-policy-routing
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.