I saw someone in another forum with the same problem. His solution is not to set it on the router management interface, but to connect the SSH channel of the router through SecureCRT, and enter a large command script to achieve.
However, he uses the IP segment to distinguish which traffic goes through the VPN channel, and the other traffic goes through the WAN channel. So his method is not suitable for me, I need to go through the VPN tunnel through the unbridged VAP.
Do you have anything in the Additional Config field?
The one time I recall seeing this problem where PBR was active, but all the traffic always went through the VPN anyway was when the user (at the direction of the VPN provider) was told to add the following to the Additional Config field.
Code:
redirect-gateway def1
When using PBR, the router ignores this pushed directive by the server. But if YOU include it on the OpenVPN client in the Additional Config field, now *everything* will be routed over the VPN, regardless what you have specified in the PBR field.
Admittedly I'm just guessing here, it's a longshot, but you've been at this for days, so I thought it worth mentioning.
Might help as well to dump the main and 10 routing tables to make sure they are setup correctly.
Do you have anything in the Additional Config field?
The one time I recall seeing this problem where PBR was active, but all the traffic always went through the VPN anyway was when the user (at the direction of the VPN provider) was told to add the following to the Additional Config field.
Code:
redirect-gateway def1
When using PBR, the router ignores this pushed directive by the server. But if YOU include it on the OpenVPN client in the Additional Config field, now *everything* will be routed over the VPN, regardless what you have specified in the PBR field.
Admittedly I'm just guessing here, it's a longshot, but you've been at this for days, so I thought it worth mentioning.
Might help as well to dump the main and 10 routing tables to make sure they are setup correctly.
Code:
ip route show table main
ip route show table 10
Thank you so much, you said the right reason, I have solved the problem now.
Thank you!