Second SSID without VPN – best practice (OpenWrt 24.10.4, WireGuard)

Hi all,

I’m running OpenWrt 24.10.4 on my router and currently all traffic is routed through a WireGuard VPN.

I followed this Mullvad guide to set it up (default route via VPN):

This works fine in general, but I’ve noticed that Amazon Prime on my Apple TV will not play unless VPN is deactivated.

What I would like to do now is:

  • keep my main WiFi / private devices routed through the VPN
  • create a second SSID for smart / media devices
  • route this second SSID directly without VPN

My question is:

What is the cleanest / recommended way to achieve this in OpenWrt?

Thanks

This sort of thing ia usually done with Policy Based Routing. Theres a package and a Luci app i think. At least that should get you on the rifht foot. i havent used it so cant give detailed advice

1 Like