I have a SSG5 firewall with some route based VPN. I have a LAN, a DMZ, an another net and WAN. How should I do to make DMZ use VPN and not LAN? I think it's a routing problem. But Source routing doesn't solve my problem.
It was easier on my old OpenBSD Box 'cause route where made by the system automatically. I think it was using Sthe VPN (SA/ProxyID) configuration to add configure them.
Thank U !
In ScreenOS, you can use PBR (Policiy based routing) which opers at the interface level to selectively cause packets to take different paths, PBR acls are processed in the first part of the route lookup. This should fit your needs.
Here's the online documentation for PBR routing un ScreenOs 61.0.