tplink er605 with nordvpn split tunneling or other suggestion
Recently bought an er605 and looking to run nordvpn at the router level which means anything behind it will be running through Nordvpn. Is there any way to setup one laptop to be able to pass through without going through Nord? I read where split tunneling is a way to accomplish that I believe, but not sure if this can be run on the er605.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
Hi,
Split tunneling option is used to something else and configured on VPN Server.
Since you want to connect to NordVPN's server, you wont have this option available.
If you want to decide, which services are using NordVPN and which are not, I believe you will have to create two VLANs on your ER605. Then in client's NordVPN configuration on that router you specify which of those 2 VLANs will go got NordVPN. The other VLAN will go directly to the Internet.
Then you have to establish which device/client can use which VLAN.
Cheers.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
When you configure VPN client on your ER605 you define the local network that will utilize that VPN:
Standalone Mode:
Controller Mode:
So one of your VLANs you are providing there.
In terms of how to manage which computer/mobile phone goes to NordVPN VLAN or not, you have few possibilities. Everything depends on what you want to achieve, what features you are utilizing as well as what conenction type your clients use (wired/wireless).
if that's only one computer that should skip NordVPN - the easiest solution IMO would be to set everyone in NordVPN VLAN's DHCP and this one specific computer IP-MAC bind to the second (open) VLAN.
Or you can set up a DHCP from NordVPN's VLAN, and manually set static IP on this one PC from the open VLAN.
Or (if those are WiFi clients), you can create 2 SSIDs (networks) where one is assigned to NordVPN VLAN, and 2nd one is assigned to open VLAN.
Of if this one PC is connected via cable to dedicated port in your ER605, you can assign this particular port to this open VLAN only (or as untagged)... I bet you could think of few other solutions :)
There are FAQs here how to work with VLANs. There is even Youtube video directly from TP-Link explaining how to use VLANs.
- Copy Link
- Report Inappropriate Content
OK so it'll be just 1/2 laptops that will need to get straight out to the internet without going through nordvpn. so I could assign another SSID I guess to the 1/2 laptops that need to get straight out. They will be wireless only so that is probably the easiest solution.
I pretty much have google wifi which doesn't allow for the vpn so thats where the tplink er605 comes in, so I'll put that in front of the google wifi. I was planning to let google wifi still handle all the stuff which I've read I'll need to put the tplink in bridge mode. With bridge mode can I still create the 2 ssid's?
- Copy Link
- Report Inappropriate Content
Ummmm, this getting complicated. The SSID thing I was mentioning would work if you would use a standard WiFi Access Point (like something from TP-Link - EAP225, EAP650 or whatever) and configure there which VLAN will those networks use.
I have no idea how Google WiFi works, never used their devices but I guess this is just a router... Which will get one network from your ER605...
Moreover, I don't think you can set up ER605 in Bridge Mode. Even if you can, then I believe VPN client functionality may be lost.
Maybe there is someone more experienced in such configuration on this forum and could help.
Cheers.
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 75
Replies: 5
Voters 0
No one has voted for it yet.