DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

Assign sid to VPN? or VLAN to VPN ? 2820 as endpoint?

  • gdawes
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
02 Apr 2010 04:54 #1 by gdawes
Ok I have had multiple lan-lan vpn's working for ages.

Recently moved to Manila from Uk, too my draytek 2820 with me.

Have access to a UK VPN via another draytek 2820 box.
UK ip 192.168.44.0
Manila ip 192.168.63.0

Have some specific requirements. Want to bypass the BBC iplayer country checks and watch iplayer via a uk vpn. Works on laptops.

However. I have some appliances where u can not pre dial a vpn like u can on a laptop. I want these appliances a WII and a receiver with me in manila to appear on the 192.168.44.0 network. or at least have all their internet traffic go through the uk routers gateway.

experimented and got nowhere.

Ideally I would like to assign vlans to vpn's, or a wifi sid to a vpn.
Ages ago I used a linksys vpn endpoint device. I know I could plug the wii into one of these, Almost bought 1 as the solution, but am sure the draytek must provide similar.

Any notes or suggestions on how to setup appreciated.

In short I want the ip of the wii only to appear as it is on the remote network.
Or failing that all the wii's internet traffic to go through the uk router's gateway.

Please Log in or Create an account to join the conversation.

More
02 Apr 2010 08:02 #2 by njh
Can you give these devices permanent IP's (either fixed or bound to MAC's) and possibly in a block within your LAN subnet (say 192.168.63.16 - 192.168.63.31 i.e. 192.168.63.16/255.255.255.240 or a smaller range)? Then set up a source based route so that all these devices are routed via the VPN.

This is only a concept as I've never used routes on the Draytek.

2900Gi/v2.5.6; 2900/v2.5.6

Please Log in or Create an account to join the conversation.

  • gdawes
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
02 Apr 2010 08:43 #3 by gdawes
That was my initial thinking.
Will have another look later today.

My grouping is as you described.

I could only see destination based routes , other than using firewall rules. hoping to keep it simple. Will look for source based router routes.

Had some issues with routing when i was trying that but then got informed o2 in the uk where my mum and vpn are based was down.

Please Log in or Create an account to join the conversation.

More
02 Apr 2010 09:27 #4 by njh
You might be right about destination based routes only. :(

2900Gi/v2.5.6; 2900/v2.5.6

Please Log in or Create an account to join the conversation.

  • gdawes
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
02 Apr 2010 11:23 #5 by gdawes
Just had another look. But stumped again.
Have the VPN working and demand dialling but stuck on how to set the gateway for 1 or a group of clients with the available interface and comands.

Would be so easy if I could assign a SID or VLAN to a VPN

Please Log in or Create an account to join the conversation.

More
03 Apr 2010 01:14 #6 by drewy
VPN and Remote Access >> LAN to LAN

4. TCP/IP Network Settings

MORE...

Add your routes there.

Basically what you need to do is route all access to the beebs servers using the above to flow through your UK VPN circuit. This will be for all devices on your lan, you may be able to break that down some how, I'm not sure.
I used to do the same with a US vpn server for netflix, hulu etc.
The pain is working out exactly what traffic needs to go over the vpn connection...I can see lots opf late nights with wireshark awaiting you :)

Please Log in or Create an account to join the conversation.