Hi, new VPN guy here.

Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware
Author Message
maillemaker
DD-WRT Novice


Joined: 31 Jul 2019
Posts: 2

PostPosted: Thu Aug 01, 2019 16:08    Post subject: Hi, new VPN guy here. Reply with quote
Hi all. New VPN user here.

I have subscribed to the NordVPN service. Currently, I have the VPN client software installed on one of my home computers on my home network. This provides VPN protection for that computer only, of course.

I have recently signed up for Google Fiber. I know that one of Google's objectives is to monitize not only how people use their web services, but as an ISP to monitize how people use the internet entirely. So, my objective is to put my entire home network on a VPN so that all devices on my home network go through the VPN, except my MagicJack VOIP phone which I see no need to route through a VPN.

I also have a second router set up as a wireless access point with a unique password. This is the for the kids as I can shut the router on and off with a smart timer socket (routers have poor parental time controls I find).

Here is what I think my network topology will need to look like:



Essentially, I believe my Netgear R6400 will function as a switch. I believe if I install the dd-wrt on the Netgear router then I can have VPN protection on all data passing through it, correct?

I believe my 6400 is a V1, since the label on the bottom says only "R6400".

Also, I have read and see that the Netgear router is an ARM device, but questions about this router appear in this (Broadcom) forum. Hopefully I am in the right place.

I have also read the stickies for this forum, or at least skimmed them (some are very long). The gist of what I understand is I need to use the wiki and not the compatibility spreadsheet for getting dd-wrt installation instructions.

Thanks in advance for your advice.
Sponsor
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12836
Location: Netherlands

PostPosted: Thu Aug 01, 2019 16:56    Post subject: Reply with quote
Welcome to DDWRT

The R6400 is a Broadcom /Arm devices so you are good here for questions. I have one running also.

For Network/VPN/routing questions we have the advanced networking forum.

I have VPN running on my R6400, but before you proceed, OpenVPN is very resource intensive and you will not get more than 35 Mb/s speed on an R6400!.

If you want more speed you have to use a more powerfull router my R7800 gets about 90 Mb/s

But if you want gigabit speed over VPN you have to use an PC and load pfsense (or DDWRT on that but I have no experience with that)

If you still want to get along with this, I think the easiest is to use the R6400 connected with its WAN port to the google fibre router, set a static IP on the WAN and place that static IP in the DMZ of the google router.

Sounds complicated but it is not Smile

But your first step is to get DDWRT on the router.

A good start is the supported devices: https://wiki.dd-wrt.com/wiki/index.php/Supported_Devices often there is a link to a setup guide, in your case it refers to this guide: https://wiki.dd-wrt.com/wiki/index.php/Netgear_R6300v2

In my signature is a setup guide for the R6400v2, that one is more complicated yours is really easy.

Also have a look at that guide, see First Flash and also you can read about two different DDWRT brands you can use.
I use builds from Kong for my R6400

Feel free to ask your questions

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087


Last edited by egc on Wed Aug 19, 2020 6:17; edited 1 time in total
jwh7
DD-WRT Guru


Joined: 25 Oct 2013
Posts: 2670
Location: Indy

PostPosted: Thu Aug 01, 2019 17:33    Post subject: Reply with quote
egc wrote:
But your first step is to get DDWRT on the router.

A good start is the supported devices: https://wiki.dd-wrt.com/wiki/index.php/Supported_Devices often there is a link to a setup guide, in your case it refers to this guide: https://wiki.dd-wrt.com/wiki/index.php/Netgear_R6300v2
Not anymore Razz I just updated them since the R6400v1 was split out of that wiki...and I updated it too. Would be good to read both though. Wink
_________________
# NAT/SFE/CTF: limited speed w/ DD # Repeater issues # DD-WRT info: FAQ, Builds, Types, Modes, Changes, Demo #
OPNsense x64 5050e ITX|DD: DIR-810L, 2*EA6900@1GHz, R6300v1, RT-N66U@663, WNDR4000@533, E1500@353,
WRT54G{Lv1.1,Sv6}@250
|FreshTomato: F7D8302@532|OpenWRT: F9K1119v1, RT-ACRH13, R6220, WNDR3700v4
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12836
Location: Netherlands

PostPosted: Thu Aug 01, 2019 18:32    Post subject: Reply with quote
Thumbs up quick as ever Very Happy
_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
maillemaker
DD-WRT Novice


Joined: 31 Jul 2019
Posts: 2

PostPosted: Thu Aug 01, 2019 18:44    Post subject: Reply with quote
Looks to me like the list still points the R6400 V1 to the R6300 link?

Anyway it sounds like this is going to be too much of a performance bottleneck to be worthwhile. Especially if I spring for the gig fiber (right now we are on the 100 package).

I looked at some of the Negate products advertised by the pfsense folks and the first one that mentions gigabit speeds costs about $700.

Is there a cheaper gigabit solution for setting up a "vpn firewall" (or whatever you call it)?
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12836
Location: Netherlands

PostPosted: Thu Aug 01, 2019 19:15    Post subject: Reply with quote
Use an old PC, that is what most of us do.

There are no Soho routers whit more than 200 Mb/s throughput that I know off (but new routers are coming everyday)

One alternative is wireguard, very experimental and not as secure as openvpn (it is all running in kernel mode)

I have seen user claiming 100 Mb/s with an R7000, but that is also far from gigabit

see: https://nordvpn.com/nl/blog/nordlynx-protocol-wireguard/

BS builds have wireguard I think, never used it

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
kernel-panic69
DD-WRT Guru


Joined: 08 May 2018
Posts: 14125
Location: Texas, USA

PostPosted: Thu Aug 01, 2019 21:52    Post subject: Reply with quote
@maillemaker, I guess you completely overlooked this one:

https://store.netgate.com/SG-3100.aspx

@egc, it seems like I never got the impression folks do what I did years ago, which is use an a pc for their internet gateway and firewall. The fun days of a PII running Slackware and TrinityOS ipchains (or was it iptables?) script. I don't miss the associated electricity bills coupled with that 400w power supply.
buffalo0207
DD-WRT User


Joined: 30 Apr 2014
Posts: 147
Location: UK

PostPosted: Mon Jan 13, 2020 18:22    Post subject: Reply with quote
@egc

Sorry to hijack this post, but as you mentioned Nordlynx here anyway, I was wondering if it was possible to install Nordlynx on the ddwrt using the instructions from the NordVPN website for a Linux installation?


https://nordvpn.com/nl/blog/nordlynx-protocol-wireguard/


Thanks...
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12836
Location: Netherlands

PostPosted: Mon Jan 13, 2020 18:47    Post subject: Reply with quote
You cannot install the app on DDWRT.

But I think you should be able to install a Wireguard client on DDWRT for NordVPN.

You have to email them for the necessary credentials (public and private key, ip address, DNS server and endpoint (IP address and port of the Nord wireguard server) )

With those you can setup the WireGuard interface.

A guide for general purpose setup and necessary script is in my signature, in the guide also a reference to a setup for Mullvad.

If you have the credentials I will try to talk you through (no guarantees Smile ).
But please open a new thread for this.

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
buffalo0207
DD-WRT User


Joined: 30 Apr 2014
Posts: 147
Location: UK

PostPosted: Mon Jan 13, 2020 19:07    Post subject: Reply with quote
@egc

Thanks for this info. Going to message NordVPN now...
boochi99
DD-WRT User


Joined: 31 Jan 2012
Posts: 88
Location: North Carolina

PostPosted: Fri Jan 17, 2020 20:43    Post subject: Reply with quote
I have a Qotom Q355G4 that I have moved on to running pfSense. I would suggest you go with something like this. It has a dual core i5 and 5 Intel NICS. It does hardware encryption and I can max out my 235Mb cable modem connection without the CPU ever going above about 12%. I only use dd-wrt on my R7000 used as an AP. I would not handicap myself using a consumer grade router if I had Gigabit internet.
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum