Hello everyone,
I am running Sophos XG (Home) v18.5 MR4 with dual-WAN in failover mode. I will soon be changing it to load-balancing globally. However, I would like to set the SDWAN policies for these 2 scenarios as exceptions to this change:
- Some certain apps in my Home Wifi VLAN subnet should only connect to the WAN interfaces as if in failover mode. Here is its policy:
- The subnet VLAN for my NAS should only be connecting to the Internet via WAN 1 only. No failover or load-balancing should be allowed on it. Here is its policy:
Below is my routing precedence. It seems legit and proper:
I am having some questions on this:
- Have I got the SD-WAN policies right ?
- Should I tick the 'Override gateway monitoring decision' box? What is it for?
- Is the reason why I can not set an SD-WAN policy for my VPN interface because it has already been one of the routing precedences (#3 in the console)?
- I want very fast access on my NAS subnet regardless whether I am on VPN or not, which DSCF marking should I assign to its SD-WAN policy ?
Thank you very much in advance guys.
This thread was automatically locked due to age.