This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG SD-WAN Policy Route to non-default Gateway not possible

Hey Sophos

 

With the new SD-WAN  Policy Route it is not possible to  route to  non-default gateways eg. "classic PBR"

This is a typical scenario if you have MPLS connections to reach corporate networks, or any other kind of complex scenario with multiple routes.

static routing only gives you the ability to make destination bases decisions, but not on source/application.

 

the only way to get around this limitation is by configuring the MPLS connection as a WAN interface, but then it automatically is assigned to the WAN Zone, which is not the optimal zone for obvious reasons.  

It would be nice if you consider to get rid of this limitation in further upgrades or if you could at least consider introducing a separate "classic PBR" function.

 

 



This thread was automatically locked due to age.
Parents
  • Hi  

    I believe it is not necessary to have MPLS as in WAN. If your MPLS as in LAN in that case as well in the "gateway" tab you may define custom gateway based on next hope and you may define monitoring condition as well. 

    Once gateway is added successfully, inside SDWAN rule you are able to get the same in drop down list. 

    I tested in local LAB XG and below is the reference snapshot:

    Port1:LAN, Port2: WAN



    WAN Link Manager gives actual WAN :



    Configure > Routing > Gateway I added below gateway over Port1 ( which is LAN zone).



    Now in the SD WAN policy routing I am getting custom "Port1 gateway" as well for selection which I have defined inside the "Gateway" tab.



    I hope you are looking for this settings requirement which I have tried.

  • Hi Vishal_R

     

    Awesome! You are absolutely right.

    By defining a custom gateway it is possible to use it within SD-WAN Policy routes. 

     

    Thank you!

Reply Children
No Data