Route all traffic on specific Port to IPsec VPN
Hi,
I have established a LAN-to-LAN IPsec VPN connection between my ER605 and a remote network.
This is working and from both networks I can access the other local network devices.
I would now like that for one specific Ethernet port on the ER605, all traffic is to be routed through the VPN connection. I.e. for this specific port, a connected device would access internet not through the local WAN but through the VPN tunnel.
How would I do this?
I would have expected that I would need to
1) Create a new VLAN and assing it to the required port
2) Create IP_Group for VLAN
3) Create Policy Routing with created IP_Group as Source IP and VPN as WAN.
Unfortunately, the Selectable WAN is only the local WAN and the UBS-Modem, not the VPN connection.
Any hints what I would need to do?
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
you cannot route all traffic through IPsec site to site,
policy routing only works on PPTP L2TP and WAN interface.
- Copy Link
- Report Inappropriate Content
Hi @coogee86
Thanks for posting in our business forum.
1. Figure out what IPsec site-to-site is made for. Your whole request will be explained.
2. Use the client-to-site and set up Policy Routing. L2TP is supported.
3. A VPN tunnel cannot be limited to a specific port. It is not on layer 1. And you cannot designate it to layer 1 anyway.
- Copy Link
- Report Inappropriate Content
you cannot route all traffic through IPsec site to site,
policy routing only works on PPTP L2TP and WAN interface.
- Copy Link
- Report Inappropriate Content
Hi @coogee86
Thanks for posting in our business forum.
1. Figure out what IPsec site-to-site is made for. Your whole request will be explained.
2. Use the client-to-site and set up Policy Routing. L2TP is supported.
3. A VPN tunnel cannot be limited to a specific port. It is not on layer 1. And you cannot designate it to layer 1 anyway.
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 135
Replies: 2
Voters 0
No one has voted for it yet.