(SOLVED) Create killswitch through firewall rules

Hi,
I am using a GL.Inet AXT-1800 running OpenWrt 21.02-SNAPSHOT r16399+165-c67509efd7 / LuCI luci-app-ddns branch git-21.284.67084-e4d24f0.

As you may know, GL.Inet uses OpenWrt with their own user interface.

This own user interface seems to lead me into my problem of the killswitch and/or the bypass not working.

I read in here I can configure a killswitch through firewall rules. Can you instruct me in how to do this?

My AXT-1800 is 192.168.178.1
My Fritzbox is 192.168.179.254

This is second page of my firewall rules as I am only allowed to embed one single photo into a post.

This device is not supported by the official OpenWrt project. As such, the version of OpenWrt you are running is GL-inet's custom fork which is heavily modified relative to the official firmware.

That said, in the official OpenWrt, simply removing the lan > wan zone forwarding will serve as a kill switch (leaving only lan > wgclient). Basically, if the VPN is down, no traffic will be allowed to flow from lan > wan. In theory, it should work on the GL-inet firmware.

If it doesn't work, though, you'll need to ask on GL-inet's user forums for help.

1 Like

Really appreciate your quick reply, thank you.

So it is this I try to delete, correct?

No, don't delete the lan zone.

Remove the forwarding from lan > wan.

1 Like

Thank you soooo much!
It really does work. You don't believe how long I had this problem!
How can I show my gratitude?

You're welcome! Glad I could help.

If your problem is solved, please consider marking this topic as [Solved]. See How to mark a topic as [Solved] for a short how-to.
Thanks! :slight_smile:

1 Like

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.