1
Virtual private networks / route to gateway group
« on: September 28, 2024, 06:05:39 pm »
Hi all,
I have 2 routed ipsec tunnels (vti) that use 2 different ISP to connect to main site.
in order for the opnsense to reach the remote subnets , i have to add a manual route.
I have setup 2 gateways each with their own interface IP and combined them in group gateway.
the question is: how can I add manual route to remote subnets through this gateway group. in the drop-down appear just the single gateways. I tried duplicating the route for the same subnet through the 2 single gateways but since there is no priority the opnsense chooses one of the 2. on the other side it is a fortigate which has a priority between routes. So it happens that when opnsense chooses to route through the secondary path when both tunnels are up, the other side is not responding due to distance set.
I have 2 routed ipsec tunnels (vti) that use 2 different ISP to connect to main site.
in order for the opnsense to reach the remote subnets , i have to add a manual route.
I have setup 2 gateways each with their own interface IP and combined them in group gateway.
the question is: how can I add manual route to remote subnets through this gateway group. in the drop-down appear just the single gateways. I tried duplicating the route for the same subnet through the 2 single gateways but since there is no priority the opnsense chooses one of the 2. on the other side it is a fortigate which has a priority between routes. So it happens that when opnsense chooses to route through the secondary path when both tunnels are up, the other side is not responding due to distance set.