Whitelisting VPN server adddresses / blocking all other

Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking
Author Message
RedFoxAU
DD-WRT Novice


Joined: 20 Apr 2019
Posts: 6

PostPosted: Sat Apr 20, 2019 5:50    Post subject: Whitelisting VPN server adddresses / blocking all other Reply with quote
Hi all,

Anyone able to assist it would be greatly appreciated

I would like to whitelist a list of VPN servers, and block all other outgoing traffic (such as if the VPN drops, all traffic is blocked) but if the VPN reconnects, it can flow through.

Also, how to get the VPN to reconnect after it drops and auto re-trying?

Have two DDWRT routers - one has the VPN.
Modem is Asus DSL-AC68U.

I somehow jagged this many years ago but I have no idea how I did it.

Thanks for any support
Sponsor
RedFoxAU
DD-WRT Novice


Joined: 20 Apr 2019
Posts: 6

PostPosted: Sat Apr 20, 2019 6:45    Post subject: Reply with quote
Thanks eibgrad, thats great.

Just to clarify,
The VPN will auto reconnect on drop out and cycle through the list?
The killswitch just blocks all non VPN traffic?

thanks again
RedFoxAU
DD-WRT Novice


Joined: 20 Apr 2019
Posts: 6

PostPosted: Sat Apr 20, 2019 11:59    Post subject: Reply with quote
also, I cannot get it working using the VPN gui, I have to save command with a script.
(I also have to enable VPN server and client in the gui (I dont enter any settings in the gui though as it breaks it))

I’m not sure how to add the list of servers in the command script. Each time I try it breaks.
if I try adding it in the gui, it breaks.
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12877
Location: Netherlands

PostPosted: Sat Apr 20, 2019 12:23    Post subject: Reply with quote
DDWRT works best if you use the GUI to setup an OVPN client.

So migrate settings to the GUI and delete the script.

To what provider are you connecting? Almost all have instructions to setup a client with the GUI

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
RedFoxAU
DD-WRT Novice


Joined: 20 Apr 2019
Posts: 6

PostPosted: Sat Apr 20, 2019 12:28    Post subject: Reply with quote
ibVPN

their gui setup and their command config appear to be different (one has TAP the other TUN) if that makes a difference.

took a bit of mucking around to get this file, might backup this profile and tranpose the script over instead of using their gui settings.

I am also using an older build, 21061 on DIR-632 - it doesnt have fields for username and password in the gui, which caused me issues. Tried a few things to address this that didnt work so appreciate any guide



thanks
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12877
Location: Netherlands

PostPosted: Sat Apr 20, 2019 12:56    Post subject: Reply with quote
First your build is really old, lots of things have changed, you should research upgrading to a more recent build.

Reset to defaults before and after upgrading and restore settings manually do not restore from a backup

see: https://wiki.dd-wrt.com/wiki/index.php/D-Link_DIR-632

https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=77729&postdays=0&postorder=asc&start=465

But take note, I think a lot of recent builds are too big, the router is picky about size, I think firmware has to be < 7,6 MB

Research the build threads

ftp://ftp.dd-wrt.com/betas/2019/03-07-2019-r39101/dlink-dir632a/

This seems the last build with a size which might work

ftp://ftp.dd-wrt.com/betas/2019/03-11-2019-r39144/dlink-dir632a/

But again see the build threads if it is working

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
RedFoxAU
DD-WRT Novice


Joined: 20 Apr 2019
Posts: 6

PostPosted: Sun Apr 21, 2019 0:33    Post subject: Reply with quote
Thanks egc - great information

Yes I had a lot of trouble finding a version that would work correctly with openvpn.

Thanks again
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum