Hi
I am curious, I have setup remote syslog target in OPNsense but its going out over the WAN interface, when it should be going over the IPSEC tunnel.
I have seen a few posts here back in 2021, just wondering if anyone had a workaround or potential fix for it yet?
thanks
its okay I have sorted it now.
For others, get rid of the IPSEC VPN and use a IPSEC Route based. Add Static Route to your syslog server over the Route based ISPEC.
For home setups the syslog will follow the default route 0.0.0.0/0 VIA WAN, so you need the IPSEC VTI interfaces created to you can syslog<ipaddress? via IPSEC VTI
https://docs.opnsense.org/manual/how-tos/ipsec-s2s-route.html