Georg Armbruster
New Around Here
Hi all,
I'm running a RT-AC88U on the current Merlin release 380.65.
I have a popular setup (I suppose), an Open-VPN-server, nothing too fancy. Everything works well... besides:
I do face an interesting issue: In the DHCP-server settings, I advertise a different default gateway (I'm running a sophos solution there for content filtering and anti-virus). This works well - for any user, which is on my regular WLAN network or on cable connection. However, this setting breaks the guest WLAN.
Now this makes perfect sense, since I disabled intranet access for the guest network - so the guest network cannot reach the "new" default gateway.
However - I have my problems finding out how this net separation is taking place. I first though of differnet networks/subnets, which is not the case. Then I thought the clients of the guest WLAN have different iptables rules - which is false as well. So my question is: what do I have to do to enable access for the guest wlan to the new default gateway, without allowing access to all internal IPs.
Or alternatively, how can I advertise a different default gateway for the guest WLAN?
I'd love to hear your comments!
Kind regards,
Georg
I'm running a RT-AC88U on the current Merlin release 380.65.
I have a popular setup (I suppose), an Open-VPN-server, nothing too fancy. Everything works well... besides:
I do face an interesting issue: In the DHCP-server settings, I advertise a different default gateway (I'm running a sophos solution there for content filtering and anti-virus). This works well - for any user, which is on my regular WLAN network or on cable connection. However, this setting breaks the guest WLAN.
Now this makes perfect sense, since I disabled intranet access for the guest network - so the guest network cannot reach the "new" default gateway.
However - I have my problems finding out how this net separation is taking place. I first though of differnet networks/subnets, which is not the case. Then I thought the clients of the guest WLAN have different iptables rules - which is false as well. So my question is: what do I have to do to enable access for the guest wlan to the new default gateway, without allowing access to all internal IPs.
Or alternatively, how can I advertise a different default gateway for the guest WLAN?
I'd love to hear your comments!
Kind regards,
Georg