OPNsense Forum

English Forums => General Discussion => Topic started by: footwork_immortal201 on September 21, 2025, 09:04:01 AM

Title: OPNsense policy based routing?
Post by: footwork_immortal201 on September 21, 2025, 09:04:01 AM
Is it possible for OPNsense to do policy-based routing? If so, is there a limit to the number of tunnels/VPNs that can be on simultaneously?

This is what I want to achieve. Instead of forcing an entire device to use the VPN, I want devices to be routed to the appropriate VPN based on the domains that it's using. For example, all queries to Chase will be routed to a US VPN. All queries to the BBC would be routed to a UK VPN. Any queries to domains not on a list would be routed directly to the Internet and not use a VPN.

Is it easy to set up this policy-based routing? If so, how do I set it up? Is there a guide out there?

Thank you!
Title: Re: OPNsense policy based routing?
Post by: Patrick M. Hausen on September 21, 2025, 11:01:00 AM
- Possible.
- No practical limit, but we have seen people with a couple of hundred of VPN connections who ran into problems.
- Easy? Depends on your experience with IP, routing, networking in general, and firewalls.