Network Configuration Help

Hello all. This is my first time here. I previously used primarily DDWRT. I have an unique application. I build industrial machines and use simple low cost routers on our manufacturing floor to connect from our internal network to the machine network. I use them as both a NAT device and a PPTP VPN. So that from dev machines a connection can be made on the local network. I recently purchased the GL-MT3000 router after using TL-MR3020 routers for 12years or so. Here is the configuration I am gunning for but I don't understand exactly how to tie this all together as far as what settings need to be set. I am using PPTP because of the simple setup in windows and since it is only internal the security is not a concern.

WAN (Intranet of Org)
LAN (Machine Network)
Radio0 (Wireless Connection to WAN as Client)
Eth0 (Bridge WAN for direct WAN connection through Radio0)
Eth1 (LAN Connection)
NAT 1:1 LAN to WAN for 2 IP Addresses
VPN PPTP

Do you need 2 WAN-s as backup?

Strongly reconsider if it really must be PPTP - or if something modern and actually secure (wireguard!) wouldn't to the same job, better.

1 Like

pptp and gre are standard… one does not have an hour to fix the network…

1 Like

This is din mountable, somewhat dust/humidity proof, significantly cheaper than industrial raspberry….. Not all support OpenWrt

No. It is just to allow for a wan side connection at the machine.

Security is not a concern here. These devices are not accessible from outside our internal network.

Not needed for this application. They are temporary for setup and testing prior to machine shipment.

To be clear this device is routing from our internal network to a machine network without the internet. No connection to the internet is made with these devices. They are used temporarily for setup and testing.

It is all possible.

What is 1:1 nat? Like M:N or no nat ie bridge?

I think, 192.168.1.1 network for LAN.

Yes, it is all possible. I recommend to use OpenVPN, it has standard application in Windows, and could be configured on router.