Solved

DD-WRT v24SP2-MULTI - Atheros - How to setup OpenVPN for WLAN virtual interface

Posted on 2014-03-01
6
1,174 Views
Last Modified: 2014-03-02
Hello, I have an Atheros chip Buffalo brand router running DD-WRT. I have setup 2 wifi signals (the regular and a virtual interface). I have also configured the router to use OpenVPN using StrongVPN as the provider.

Now, how do I get devices connected to the virtual or the regular wifi interface to be routed thru the VPN, while the other wifi signal to be router thru my regular ISP.

I have attached some pictures of the wifi and the OpenVPN setup with identifying information removed. Thanks for the help, this problem has been bugging me for weeks now.
wifi-setup.jpg
OpenVPNsetup.jpg
0
Comment
Question by:confusednewbie
  • 3
  • 3
6 Comments
 
LVL 77

Expert Comment

by:arnold
ID: 39898246
You would need to VLAN the wifi, then you would need to update the iptables manually to reroute the WIFI IP range via a different path.

note that you should take care to establish a non-vpn route in the event it drops.
0
 

Author Comment

by:confusednewbie
ID: 39898603
thanks, coyld you provide a step by step on how to do this on the dd-wrt interface? like what sections and examples of what to input?
0
 
LVL 77

Expert Comment

by:arnold
ID: 39898616
I am not sure you can achieve the setup you want using the dd-wrt interface.

Policy based routing is a ...

The distinction you are setting
wired connection go out the internet VLAN1
wifi1 connected go out the internet VLAN1
wifi2 connected send all via OpenVPN VLAN2


you may have to use an ssh client to connect to buffalo and use/setup the iptables rules to route........


Ref article VLAN setup dd-wrt example.
http://www.experts-exchange.com/Hardware/Networking_Hardware/Routers/A_10851-DD-WRT-separate-LAN-from-WLAN-on-WRT160NL-linksys-router.html
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 

Author Comment

by:confusednewbie
ID: 39898627
thanks. I tried that and waa always stuck in how to allow openvpn in just vlan2. any commands available? that is the main part I have been stuck with (after following the guide here http://www.dd-wrt.com/wiki/index.php/Separate_LAN_and_WLAN)
0
 
LVL 77

Accepted Solution

by:
arnold earned 500 total points
ID: 39898759
That is the difficult part you have to use iptables SNAT on the way out to match the IP range from the VLAN2 wifi and alter the source IP such that the response will flow back through the VPN rather than sent via the Internet on the other side.

The dd-wrt version on your setup is likely customized by Buffalo.

Have you configured the VLAN of the second wifi and tagged
use
iptables -t nat -L
iptables -t filter -L


When you define the openVPN site to site. you lest the IPs in the policy based routing section that will have the WIFI2 LAN/tagged sent out to 0.0.0.0 via the tunnel.
A discussion that deals with iptables and inter vlan rules.

http://www.dd-wrt.com/phpBB2/viewtopic.php?p=431294

your need deals with inter-location routing
0
 

Author Closing Comment

by:confusednewbie
ID: 39899030
Excellent answer, this pointed me on the right direction. Thanks.
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Need WiFi? Often, there are perfectly good networks that don't have WiFi capability - and there's a need to add it.  - Perhaps you have an Ethernet port into a network but no WiFi nearby. - Perhaps you have a powerline extender and no WiFi at the…
Meet the world's only “Transparent Cloud™” from Superb Internet Corporation. Now, you can experience firsthand a cloud platform that consistently outperforms Amazon Web Services (AWS), IBM’s Softlayer, and Microsoft’s Azure when it comes to CPU and …
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question