Can I restrict VPN to a specific device?

Discussions for BiPAC 8900 series: 8900AX-1600, 8900AX-2400, 8900X
Post Reply
johngc
Posts: 5
Joined: Sun Mar 11, 2018 6:53 am

Can I restrict VPN to a specific device?

Post by johngc »

I apologise if this is a straight forward thing but I have played around with the settings and can't seem to figure it out and am struggling to articulate it well enough on Google to find an answer :D

Essentially I have an OpenVPN server set up and working nicely so I can connect to my home network when I am out and about - all working fine thanks to the recent firmware update.

I would now like to add a VPN client service (PIA) onto the router but only so that one device at home (a basic server running a number of dockers) uses it when accessing the internet. I need that device to still be accessible from my home network so be able to connect to it when I connect via the OpenVPN server from outside.

So I think I want to set up PIA as a VPN client but ensure that it is only available to my server on a specific LAN port or Interface Group?

EDIT: Added a word

EDIT: FYI I appear to have found a slight bug with the OpenVPN Client settings. OpenVPN Server Address appears to be restricted to 30 characters so swiss.privateinternetaccess.com has the 'm' truncated :-)
billion_fan
Posts: 5398
Joined: Tue Jul 19, 2011 4:30 pm

Re: Can I restrict VPN to a specific device?

Post by billion_fan »

johngc wrote: Sat Apr 28, 2018 11:25 am I apologise if this is a straight forward thing but I have played around with the settings and can't seem to figure it out and am struggling to articulate it well enough on Google to find an answer :D

Essentially I have an OpenVPN server set up and working nicely so I can connect to my home network when I am out and about - all working fine thanks to the recent firmware update.

I would now like to add a VPN client service (PIA) onto the router but only so that one device at home (a basic server running a number of dockers) uses it when accessing the internet. I need that device to still be accessible from my home network so be able to connect to it when I connect via the OpenVPN server from outside.

So I think I want to set up PIA as a VPN client but ensure that it is only available to my server on a specific LAN port or Interface Group?

EDIT: Added a word

EDIT: FYI I appear to have found a slight bug with the OpenVPN Client settings. OpenVPN Server Address appears to be restricted to 30 characters so swiss.privateinternetaccess.com has the 'm' truncated :-)
Normally when using the router as VPN client all traffic from all clients is routed through the VPN, there isn't a option for only 1 client to route traffic through the VPN tunnel.

The other option is to install a VPN client on your server
Post Reply