Omada Setup with ExpressVPN Router
I just installed an Omada setup in my house with the following hardware and connected in the following order.
WAN -> ER605 -> Switch -> EAPs -> Hardwired Connections
I have a Linksys WRT3200ACM router with VPN Express installed on it that I would also like to run in this setup. Can anyone help me in my configuration? I've tried connecting the setup in the following orders but each time the ER605 disconnects from the setup. The goal is to have most of the traffic on the home network run through this VPN to encrypt the traffic. ExpressVPN offers split tunneling which I would like to keep intact if possible. The ExpressVPN firmware has no means of turning off DHCP that I am able to find. Any help would be greatly appreciated, thanks.
Tried so far.
WAN -> ER605 -> WRT3200ACM (LAN Port) -> Switch
WAN -> ER605 -> WRT3200ACM (WAN Port) -> Switch
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
@btx Sorry maybe I have not been clear. Let me list what I am trying to do.
1. WireGuaed VPN on the OpenWrt router works fine with the service you sent me to try. So we are good there, the VPN works as expected.
2. After getting the VPN established I took the next step. Trying to implement it into my Omada system. I thought for it to work both routers had to be on the same subnet 192.168.0.X, the Omada default. So I set the OpenWrt router to 192.168.0.1 and ER605 to 192.168.0.2 and turned off the DHCP on the OpenWrt thinking Omada would control all the DHCP as that's where my VLANs are setup and that would be simplest. I did this because I thought I was avoiding a double NAT.
3. if I read you correct I can just put the OpenWrt on its one subnet, say 192.168.1.1, and plug it into the ER605 WAN, 192.168.0.1, and then everything on the Omada will work like it should? Do I turn DHCP back on for the OpenWrt?
- Copy Link
- Report Inappropriate Content
EDIT
- Copy Link
- Report Inappropriate Content
@btx Just an update. I have both VPN services up and running on OperWRT so I can switch back and forth. I am testing them and so far the one you provided me seems slower and is blocked by many streaming services. Not sure when I will have a chance to try the router on the whole system as the family doesn't like it when the network goes down, lol.
- Copy Link
- Report Inappropriate Content
EDIT
- Copy Link
- Report Inappropriate Content
@btx I can try Chicago I just know that city is about twice as far from me as Atlanta.
I tried Netflix and Disney+ which both would not connect. I know the service you advocate has the option of a private ip to work around the issue. The real difference between the two are the upload speeds. I am only getting 200 up with your and 650 up with the other one. I will say neither is symmetrical like I get when off the VPN.
I don't use and port forwarding is this something I need or would there be a reason for it in the future?
- Copy Link
- Report Inappropriate Content
EDIT
- Copy Link
- Report Inappropriate Content
@btx I was able to at least get the router in place tonight with the Omada system with the below setup. This will give me the ability to experiment more with both services before I decide. One issue I've run into is no matter what my Omada ACL settings are I can't ping beyond the .1 gateway in each VLAN. An example is I can ping from 192.168.2.13 (PC) to gateway 192.168.3.1 but no deeper into the subnet. So if I tried pinging 192.168.3.5 it won't reach it. Any ideas? The whole system might just need a reboot which I will do when everyone goes to bed.
ISP -> (WAN) OpenWRT with WireGuard Running (LAN) -> (WAN) ER605 (LAN) -> Switch
- Copy Link
- Report Inappropriate Content
@btx So what I have discovered with playing with the Permit ACL under switch is I can give 192.168.2.X permision to other subnets but only by permitting the IP. I was trying to permit it by MAC and for some reason that doesn't work anymore now that the OpenWRT router is in place. Before this is how I permitted things. Since I can't do any stateful rules what is the best permit solution with Omada cross subnet? By IP or MAC or some other solution? Thanks.
- Copy Link
- Report Inappropriate Content
EDIT
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 6631
Replies: 59
Voters 0
No one has voted for it yet.