31
General Discussion / Opnsense prerouting (Policy based routing)?
« on: July 02, 2018, 03:43:01 pm »
Hi!
I've noticed *bsd is a fair bit different than Linux. Normally, for PBR I would use
However, as I understand, no router will not able to act on this type of 'mark' as its not actually something that is set in the ip packet. What kind of actionable items can Opnsense use for a policy based routing decision? Hereby excluding the source and destination address as possible candidates.
I have a Linux router in play that will have to mark the traffic somehow so that Opnsense can route it out of the desired interface.
I've noticed *bsd is a fair bit different than Linux. Normally, for PBR I would use
Code: [Select]
MARK --set-mark 1
as described here https://www.tldp.org/HOWTO/Adv-Routing-HOWTO/lartc.netfilter.html.However, as I understand, no router will not able to act on this type of 'mark' as its not actually something that is set in the ip packet. What kind of actionable items can Opnsense use for a policy based routing decision? Hereby excluding the source and destination address as possible candidates.
I have a Linux router in play that will have to mark the traffic somehow so that Opnsense can route it out of the desired interface.