Kill switch for all except wifi

i configured openvpn successfully connected, just i want do this configuration:
if vpn goes offline all network disable just wifi not be disabled
its possible? how?


simply remove the lan zone > wan zone forwarding rule in the firewall. This will prevent any lan traffic from egressing via the wan... all traffic will have to traverse the tunnel or not at all.

Keep in mind that this will also disable your wifi network's internet access... if you want to keep the internet access on wifi running even when the VPN is down, you'll need to create a second lan and associate it with wifi.

1 Like

i just rejected all things on lan at firewall, and now i cant connect to the router local IP, but vpn connected, and works fine,
now i dont know how to going to admin panel lol

I didn’t say you should do that. Not sure why you decided to change the lan zone input policy.

Yup. Makes sense.

You need to use failsafe mode to fix the lan firewall zone. Input should be accept (as well as output and forward).

It is too complicated. The simplest approach is to implement kill-switch for all without exceptions.