OpenVPN and Internal DNS on ER7206 in Standalone Mode

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

OpenVPN and Internal DNS on ER7206 in Standalone Mode

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
OpenVPN and Internal DNS on ER7206 in Standalone Mode
OpenVPN and Internal DNS on ER7206 in Standalone Mode
2025-04-10 11:38:05 - last edited 2025-04-15 01:18:11
Model: ER7206 (TL-ER7206)  
Hardware Version: V2
Firmware Version: V2.6_2.2.0 Build 20250218

Hi TP-Link Community,

 

I’m using a TP-Link ER7206 (latest firmware) in Standalone Mode and need help with two things:

✅ 1. OpenVPN Access to LAN

I’ve configured OpenVPN, and remote clients can connect, but they can’t reach internal devices on the LAN (192.168.11.0/24).

I initially used the same subnet for the VPN IP Pool (192.168.11.0/24), which caused routing issues.

I’ve now changed the VPN pool to a non-overlapping subnet:

  • LAN: 192.168.11.0/24

  • VPN Pool: 10.8.0.0/24

  • “Allow clients to access the LAN” is enabled

  • I also added route 192.168.11.0 255.255.255.0 to the client config

But the VPN clients still can’t reach internal hosts.

✅ 2. Internal DNS for beast.dk

I host internal services under beast.dk. Externally, it resolves fine via public DNS.

Internally, I want beast.dk to resolve to its local IP (192.168.11.11). I’ve added a LAN DNS entry in the ER7206, and it works if clients use the router as DNS.

However, clients using external DNS (e.g. 1.1.1.1) bypass the override.

❓ Questions:

  1. What else is needed to allow VPN clients to access the LAN?

  2. Is there a way to enforce internal DNS or support NAT loopback in Standalone Mode?

  3.  

Thanks in advance!

  0      
  0      
#1
Options
1 Accepted Solution
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode-Solution
2025-04-14 05:48:07 - last edited 2025-04-15 01:18:11

  @BennyNissen 

 

I have it working. I think the problem was related to the fact that the VPN was using UDP but the NAT virtual servers only allowed TCP/IP?

 

Thank you for all suggestions.

Recommended Solution
  0  
  0  
#4
Options
3 Reply
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode
2025-04-10 12:19:42

  @BennyNissen 

 

1. remove all manual routing. you should not route anything

 

  0  
  0  
#2
Options
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode
2025-04-11 01:42:24

Hi @BennyNissen 

Thanks for posting in our business forum.

For the second question, are you using the DDNS? If yes, then it should loop back.

If you don't, the behaviors are expected.

  1  
  1  
#3
Options
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode-Solution
2025-04-14 05:48:07 - last edited 2025-04-15 01:18:11

  @BennyNissen 

 

I have it working. I think the problem was related to the fact that the VPN was using UDP but the NAT virtual servers only allowed TCP/IP?

 

Thank you for all suggestions.

Recommended Solution
  0  
  0  
#4
Options