This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Add a WAN connection for OpenVPN use via DD-WRT router

I wonder if this is possible.

My UTM220 currently has 2 WAN connections, my main fiber link and a 4g dongle for failover. I want to add a 3rd one which connects to a router running DD-WRT and OpenVPN and has a permanent VPN connection running.

I then want to direct all Internet traffic from some devices on my LAN over this link.

The UTM is the DHCP and DNS server for my LAN.

Can this be done?

TIA



This thread was automatically locked due to age.
Parents
  • Hi.

    In my opinion it's only possible with a additional DD-WRT router on the Sophos UTM site which will build up the VPN connection to the other DD-WRT router. Because when you use the Sophos UTM as OpenVPN server to connect the DD-WRT router from the other site as a client or Site-To-Site connection, this connection will not appear as a WAN interface. Therefore you can't route the client traffic to this connection.

    My idea:

    - Configure a new WAN interface on the UTM
    - Connect this WAN interface to the DD-WRT routers LAN
    - Build up a Site-to-Site connection between this DD-WRT router and the other one on the other site
    - Use "Policy Routing" to define which client/service will go through this connection

    Jas Man

Reply
  • Hi.

    In my opinion it's only possible with a additional DD-WRT router on the Sophos UTM site which will build up the VPN connection to the other DD-WRT router. Because when you use the Sophos UTM as OpenVPN server to connect the DD-WRT router from the other site as a client or Site-To-Site connection, this connection will not appear as a WAN interface. Therefore you can't route the client traffic to this connection.

    My idea:

    - Configure a new WAN interface on the UTM
    - Connect this WAN interface to the DD-WRT routers LAN
    - Build up a Site-to-Site connection between this DD-WRT router and the other one on the other site
    - Use "Policy Routing" to define which client/service will go through this connection

    Jas Man

Children
No Data