I am using an Asus RT-AC68U with Merlin to connect to my open VPN server at another location to achieve a site-to-site vpn using Openvpn. The RT-AC68U's network is 192.168.2.0/24 and the Openvpn server's network is 192.168.1.0/24. I have port routed port 80 from the router at 192.168.1.0/24 to the VPN server on which I have iroute 192.168.2.0/24 for the RT-AC68U. I have also applied Iptables DNAT in the VPN server to my web server. The problem is that as long as I do not choose to route all traffic through the tunnel in the merlin web interface I cannot do http requests i.e open the frontpage of the web server from 192.168.1.0/24, I can still ping the web server successfully and I can successfully communicate in the direction 192.168.2. 0/24 ->192.168.1.0/24. It seems that the http packets get stuck in the RT-AC68U on the way back. I want the network 192.168.2.0/24 to not use the tunnel for WAN. Is there anybody who can point me in the right direction, I have tried everything I can come up with.