We have a problem where we need to transfer traffic from the DMZ segment to another router.
We published a DMZ network via AntiDDoS systems through an R2 router. The firewall itself goes to the Internet through R1.
Traffic must be routed by the DMZ network through R2.
When we collect tcpdump we find a route asymmetry, that traffic comes from R2 and goes to R1.
We created a PBR so that traffic from the LAN goes one route and traffic to the Internet goes through router R2. I think I configured the PBR incorrectly. How to set PBR correctly, maybe there is a recommendation?
Additional information:
I set up NAT to the Internet for server x.x.x.100 through address x.x.189.14.
And also ProxyArp x.x.189.14 to aders 172.x.x.244