Posted: Sat Jun 10, 2017 6:06 Post subject: R7000 with default VLAN.VLAN3 and VPN
Hi,
I wanted to move my router from pfsense to R7000 because I don't want to run my microserver 24x7 anymore. I believe R7000 can do replace my pfsense with some functionalities that I use with pfsense
I flashed my R7000 with DDWRT Firmware: DD-WRT v3.0-r31575M kongac (03/21/17)
I currently have 2 vlans now default VLAN (I think VLAN 1) with IP 192.168.30.x and another VLAN 3 for VOIP and IP CAM 192.168.3.x.... everything was working but after I turned on my PIA VPN.... all the IP from the default VLAN can do internet, but not the IP from VLAN 3. I don't have anything firewall rules at the moment but I tried a few i.e
iptables -I INPUT -i vlan3 -j ACCEPT
iptables -I FORWARD -i vlan3 -o br0 -m state --state NEW -j ACCEPT
iptables -I FORWARD -i vlan3 -o ppp0 -m state --state NEW -j ACCEPT
iptables -I FORWARD -i vlan3 -o tun1 -m state --state NEW -j ACCEPT
not sure if its correct, this is the part (iptables) im still confused
I think I've tried that + a few firewall rules. It did not work well. I will try that again.
BTW I've used the ui to set the vlan for Port 3, Then unbridge the vlan 3 set the ip address, Then set the hdcp for vlan 3. It was working well. Vlan 3 has internet even without firewall rules.
After I configured VPN that's the time vlan 3 doesn't have internet. Turning VPN off wlll give internet to vlan 3
I've tried to add 192.168.30.0/24 in the Policy based routing, it worked. VLAN 3 including my VOIP have access to internet
But the problem now is with the default VLAN (192.168.30.x). the DNS some how is not working. I was able to fix it by changing the DNS of my laptop (connected to the default VLAN) to 8.8.8.8. Then it was able to access the internet. but my android phone connected via wifi cannot access internet. the android is also in the default VLAN