Admin-down Gateway Still Passing Traffic
-
Here's an interesting one. I've got one of my 2 WAN interfaces currently marked as "Mark Gateway Down" under System->Routing->Gateways. I ran a packet capture on the interface and I'm seeing a bunch of ARP traffic (expected), but I'm also seeing ICMP traffic to the ISP router, and a bunch of DNS over TLS traffic going with Cloudflare and Google IPs.
I can only use the "Mark Gateway Down" option, and not the "Disable this Gateway" option, because the interface is part of a Gateway Group. Can anyone explain why this traffic would still be flowing?