newbie questions about VPN and OpenDNS

Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware
Author Message
emanon
DD-WRT User


Joined: 25 Oct 2019
Posts: 144

PostPosted: Tue Oct 29, 2019 16:25    Post subject: newbie questions about VPN and OpenDNS Reply with quote
If a VPN service such as ExpressVPN or IPVanish is added to the ddwrt router, each client then accesses the internet masqueraded behind the VPN service? If so, does this mean kids could access adult sites? If so, can OpenDNS be used simultaneously with VPN to prevent kids from accessing inappropriate sites while using a VPN?
Sponsor
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12917
Location: Netherlands

PostPosted: Tue Oct 29, 2019 16:37    Post subject: Reply with quote
You can use what DNS servers you want, with or without VPN.
_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
emanon
DD-WRT User


Joined: 25 Oct 2019
Posts: 144

PostPosted: Tue Oct 29, 2019 16:41    Post subject: Reply with quote
egc wrote:
You can use what DNS servers you want, with or without VPN.


Ok I might try it.
emanon
DD-WRT User


Joined: 25 Oct 2019
Posts: 144

PostPosted: Tue Oct 29, 2019 20:26    Post subject: Reply with quote
I now have VPN working. IPVanish has instructions on their site to add it to ddwrt. The instructions worked perfectly. However, according to speed checker in ddwrt , my speed has drastically fallen and I can tell the difference when streaming via Hulu. Here are the before and after tests. Should this be happening?


Screen Shot 2019-10-29 at 11.31.02 AM.png
 Description:
Speed Test before VPN install
 Filesize:  177.2 KB
 Viewed:  4322 Time(s)

Screen Shot 2019-10-29 at 11.31.02 AM.png



Screen Shot 2019-10-29 at 2.59.15 PM.png
 Description:
Speed Test after VPN install
 Filesize:  192.86 KB
 Viewed:  4322 Time(s)

Screen Shot 2019-10-29 at 2.59.15 PM.png


bushant
DD-WRT Guru


Joined: 18 Nov 2015
Posts: 2037

PostPosted: Tue Oct 29, 2019 22:39    Post subject: Reply with quote
Depends what your router is. And encryption level to some degree.
So that may be about right.

More CPU speed = more VPN speed.

R7800 at 1700MHz may do around 90Mb/s.

_________________
Forum Guide Lines (with helpful pointers about how to research your router, where and what firmware to download, where and how to post and many other helpful tips!)
How to get help the right way

Before asking for help - Read the forum guidelines AND Upgrade DD-WRT!
Adblock by eibgrad (1.1M blocked) + Blocklist Collection

emanon
DD-WRT User


Joined: 25 Oct 2019
Posts: 144

PostPosted: Tue Oct 29, 2019 22:49    Post subject: Reply with quote
bushant wrote:
Depends what your router is. And encryption level to some degree.
So that may be about right.

More CPU speed = more VPN speed.

R7800 at 1700MHz may do around 90Mb/s.


I am using an R7000 which has a 1.0 GHz dual-core processor. Look at the speed before VPN. It was greater than 100 Mbps. That's an 80% reduction in speed! That's too large of a reduction just because VPN was added isn't it?

I think I will remove VPN and just use IPVanish on my computer when I want to use it. Out here in the rural area where I live 100Mbps (which is what I was getting before installing VPN) is a proud-possession. No one in the house wants to go back to our days when we only received 20Mbps!
Alozaros
DD-WRT Guru


Joined: 16 Nov 2015
Posts: 6447
Location: UK, London, just across the river..

PostPosted: Wed Oct 30, 2019 7:52    Post subject: Reply with quote
yep VPN on R7000 (depends from encryption) you will get
around 40Mbit max....
Bett use VPN on PC level instead...

Once you feel more confident with DDWRT, you can click on the red link in my sig to harden DNS over TLS.....

_________________
Atheros
TP-Link WR740Nv1 ---DD-WRT 55630 WAP
TP-Link WR1043NDv2 -DD-WRT 55723 Gateway/DoT,Forced DNS,Ad-Block,Firewall,x4VLAN,VPN
TP-Link WR1043NDv2 -Gargoyle OS 1.15.x AP,DNS,QoS,Quotas
Qualcomm-Atheros
Netgear XR500 --DD-WRT 55779 Gateway/DoH,Forced DNS,AP Isolation,4VLAN,Ad-Block,Firewall,Vanilla
Netgear R7800 --DD-WRT 55819 Gateway/DoT,AD-Block,Forced DNS,AP&Net Isolation,x3VLAN,Firewall,Vanilla
Netgear R9000 --DD-WRT 55779 Gateway/DoT,AD-Block,AP Isolation,Firewall,Forced DNS,x2VLAN,Vanilla
Broadcom
Netgear R7000 --DD-WRT 55460 Gateway/SmartDNS/DoH,AD-Block,Firewall,Forced DNS,x3VLAN,VPN
NOT USING 5Ghz ANYWHERE
------------------------------------------------------
Stubby DNS over TLS I DNSCrypt v2 by mac913
emanon
DD-WRT User


Joined: 25 Oct 2019
Posts: 144

PostPosted: Wed Oct 30, 2019 8:51    Post subject: Reply with quote
That is too slow for my household needs. I have disabled the VPN.
davefor
DD-WRT Novice


Joined: 11 Mar 2022
Posts: 1

PostPosted: Fri Mar 11, 2022 23:31    Post subject: Reply with quote
The best bet would be a subscription to OpenDNS or Cisco Umbrella which would allow you to block specific site categories via DNS. The challenge here is that in order to apply the policy that you have specifically configured, this is normally achieved via verifying your public IP address. Therefore you may wish to use a VPN service that will allow you to pick a static IP address, for example PIA. Or use an OpenDNS/Umbrella subscription that supports the roaming client - which will tunnel your DNS traffic to Umbrella regardless of external IP presented.
foz111
DD-WRT Guru


Joined: 01 Oct 2017
Posts: 707
Location: Earth

PostPosted: Sat Mar 12, 2022 9:29    Post subject: Reply with quote
Should have gone with a VPN provider that supports wireguard client running on a router.
Even from a R7000 it will run pretty fast giving you a good throughput.
Be aware that you can only get supported geolocation services through the VPN if you use there DNS or the services will detect a DNS leak. E.g. BBC iPlayer or say DAZN, FuboTV etc etc etc.
Hope this helps

_________________
Netgear R7800 PPPoE Main Router
Network IPV4 - Isolated Vlan's with IoT Devices. Unifi AC-Pro x 3 AP's, Router Wi-Fi Disabled. OVPN Server With Paid Commercial Wireguard Client's. Gateway Mode, DNSMasq, Static Leases & DHCP, Pi-Hole DNS & Running Unbound.

No one can build you the bridge on which you, and only you, must cross the river of life!
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum