IPSec over secondary WAN outgoing WAN issue

Started by m256, December 13, 2024, 03:10:06 PM

Previous topic - Next topic
Hi,
I have WAN1 used for all internet accesss (using as GW for 0.0.0.0/1 and 128.0.0.0.0/1).
Now, I want to use WAN2 for all IPSec access. If I setup a static route to remote IP, this works fine. However, there's a dynamic IP on the other end, so this is not a solution.
It seems that with pfsense this is not possible, routing always wins over policy routing and the traffic for a service (let's say udp/500) goes out using static route even if IPSec is bound to WAN2 interface and you have a gateway set up in firwall rules. Is opnsense capable of this?