Long time DDwrt user and finally made the move to OpenWrt due to what seems to be a more simplified and working Vlan config. I have yet to take a look at that, but first i want to recreate what i had in DDwrt.
Nordvpn Openvpn CLIENT i have running. I can set if manually on and off if i want privacy. I dont have/want a killswitch.
Wireguard SERVER i have running so i can connect to home LAN on my mobile.
Policy based routing i have running to let 1 IP(website) go over WAN instead of openVPN Client
Question:
How do i get wireguard server to pass all incoming traffic to the openVPN client while still maintaining LAN accces?
So IF i want privacy on my mobile i can wireguard to home. I know Nordvpn had an app for that, but thats not the question
I can only succeed with help of tutorials. I know why and when, but not how/syntax etc.
If you say make interface, make firewall code etc , then ill be clueless.
It is very interesting question, because Wireguard uses UDP, whereas PBR requires TCP for tracking of connection. I see examples in Readme PBR, but I don't understand, how they work.
But if configuration above works, you should add forwarding from WG zone to OpenVPN zone. It should not influence on LAN access.
I have the same scenario "Wireguard server to pass all incoming traffic to the openVPN client while still maintaining LAN access", but the Wireguard client (Android) cannot connect when the openvpn (nordvpn) client is active.
Did you get to work?
Thanks
EDIT:
Solved with added on my OpenVPN (NordVPN):
--pull-filter ignore redirect-gateway
And I used PBR to route specific source subnets to the VPN.