<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Routing through a gateway that is down, bypassing policy routing]]></title><description><![CDATA[<p dir="auto">I have a multi-WAN/gateway setup with failover. We had a major provider outage yesterday, so the backup WAN/gateway is in use with the preferred gateway down. The provider started to restore services and some networks are beginning to be reachable but some are still unreachable. The IP I use to monitor the gateway is still not pingable, so the gateway stays down. But by doing ping and traceroute from the Diagnostics tools I can see that some outside IPs are reachable already.</p>
<p dir="auto">I wanted to investigate more what's reachable and what's not from a PC on my LAN. It's cumbersome to do from pfSense and easier from a PC. I thought maybe the IP I use for monitoring stopped responding to pings forever. I created a typical LAN rule to bypass policy routing as described here: https://docs.netgate.com/pfsense/en/latest/multiwan/policy-route.html and as I did many times before when I wanted to connect through my secondary gateway when the primary was still up. I set Interface to LAN, Source - an LAN IP of this specific PC, Destination - any, and Gateway - that primary gateway that is considered down by pfSense but it's not completely down as I described above.</p>
<p dir="auto">And it didn't work. I was routed through a backup gateway. I read more from the above link and it seems it's not possible to route through a gateway that is <em>considered</em> down by pfSense. The link above states "<em>If that gateway is down, the rule will act as if the gateway was not set at all.</em>" There is a paragraph there "Enforcing Gateway Use". But it it boils down to blocking all traffic is that gateway is <em>considered</em> down by pfSense.</p>
<p dir="auto">Is there any way to route traffic through a gateway that is considered down by pfSense by in reality it's only "partially" down?</p>
]]></description><link>https://forum.netgate.com/topic/173357/routing-through-a-gateway-that-is-down-bypassing-policy-routing</link><generator>RSS for Node</generator><lastBuildDate>Tue, 09 Jun 2026 12:06:34 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/173357.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 09 Jul 2022 20:03:01 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Routing through a gateway that is down, bypassing policy routing on Sat, 09 Jul 2022 20:38:01 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a> said in <a href="/post/1051043">Routing through a gateway that is down, bypassing policy routing</a>:</p>
<blockquote>
<p dir="auto">You can tell pfsense to consider that gateway up by disable monitoring</p>
</blockquote>
<p dir="auto">Thanks. But I don't want to do that because that gateway will be operational and become primary. But the service is only partially restored.</p>
<p dir="auto">I guess the other way would be to assign Tier 1 to the backup gateway and Tier 2 to this one and disable monitoring as you suggested. But I thought there might be a way to force routing through a gateway that is down. I guess it goes against the logic.</p>
]]></description><link>https://forum.netgate.com/post/1051048</link><guid isPermaLink="true">https://forum.netgate.com/post/1051048</guid><dc:creator><![CDATA[pfpv]]></dc:creator><pubDate>Sat, 09 Jul 2022 20:38:01 GMT</pubDate></item><item><title><![CDATA[Reply to Routing through a gateway that is down, bypassing policy routing on Sat, 09 Jul 2022 20:05:37 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/pfpv">@<bdi>pfpv</bdi></a> said in <a href="/post/1051041">Routing through a gateway that is down, bypassing policy routing</a>:</p>
<blockquote>
<p dir="auto">Is there any way to route traffic through a gateway that is considered down by pfSense by in reality it's only "partially" down?</p>
</blockquote>
<p dir="auto">You can tell pfsense to consider that gateway up by disable monitoring</p>
<p dir="auto"><img src="/assets/uploads/files/1657397136247-monitoring.jpg" alt="monitoring.jpg" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1051043</link><guid isPermaLink="true">https://forum.netgate.com/post/1051043</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Sat, 09 Jul 2022 20:05:37 GMT</pubDate></item></channel></rss>