VPN as WAN traffic

I have successfully set up VPN as WAN with NordVPN. I have successfully gotten it to work. My use case is to have only one VLAN tied to it. I have successfully completed all of that. What I can’t figure out is how to lock in the VPN as WAN to only be used by the VLAN I have specified in outbound rules.

Basically, the only way that I can get the VPN WAN to be active is to place it in priority one, second position underneath the actual Starlink connection. When I do this, inevitably, every time at some point, the connection of my primary VLAN always rolls overt the VPN WAN. I wouldn’t be able to pinpoint when this happens, but I am sure that it is during a small micro outage, or something that is triggering it to roll over to position 2 WAN.

Any suggestions?

Summery,

2 VLANS

VLAN 1 always tied to physical WAN connection with no chance of it rolling to WAN 2 (VPN as WAN)

VLAN 2 always tied to VPN as WAN connection with no chance of failover to physical WAN.