How to auto-block connection if vpn is dropped

Is there a way to configure the openvpn client so that all outgoing connection are automatically blocked if the vpn connection is dropped or the vpn client can't establish connection?
I don't see setting for it in luci/web interface, but maybe available in the cli?

thank you.

1 Like

Use a separate firewall zone for the VPN interface and disable the LAN to WAN forwarding.

3 Likes

Basically something like the following?

  • allow traffic from lan to vpn
  • deny traffic from lan to wan
1 Like

If you don't allow it, it will be denied.

3 Likes

Got it. The default action is deny.

2 Likes