Backup/restore and SSID with connection to differents VPN nordvpn server

Hi all,

I hope you will be able to help clear things up...well more than that :slight_smile:
My MT6000 is my main router, used with a phone in tethering mode, it's my only source of internet for my 3pcs, 3 laptops, 3 tablets, various phones, and few IOT devices...everything on the main wireless network for the wireless part, and everything in the same 192.168.1.X ip range (wifi and lan).
Yes my home network is a mess right now, I know, but it's working, not very safely but it's working... That why I need to clean it up.
However as the flint2 is my main device, I can't play and take the risk of everything being offline for too long if I mess up.

what I have :
model : GL.iNet GL-MT6000
firmware : OpenWrt 21.02-SNAPSHOT / LuCI openwrt-21.02 branch git-22.335.71649-0ecaf74
GL Version 4.8.2 release3 -> a few days old :slight_smile:
apps:
dhcp
AdGuardHome
Parental control
unbound 1.16.0

ports used
WAN/Lan1 2.5gbps -> managed switch no vlan (main lan, pc, nas...)
Lan5 1gbps -> unmanaged switch AV/music/verizon router in AP mode not possible to convert to openWRT :frowning:

So the questions :slight_smile:

  1. Can I do a backup of everything (the flint2) with apps, dhcp, general config etc ? I mean everything, like doing an image, so I can restore it quickly and be back online really fast in case of trouble or if I mess up ?
    if it's possible what/how should I do it?

  2. of course how can I restore the previously done backup :slight_smile:

  3. (even if this kind of subject has been answered by Bruce quite a few times, it has not be answered in the 4.8.2 if it's different :D)...I would like to add and split SSIDs...
    The lan network should be able to access all devices of lan and wlan (all of the machines on all ssids if possible (like a manager vlan of sort))
    The main SSID/wifi can access all devices (like lan) -> not very important my computers are wired but to set up IOT it might be needed, or just used as a backup plan
    IOT can access 1 ip (or at least specified devices/port, not all) on the main lan
    Guest : no access to lan at all; just internet
    1 (2.4 and 5) main SSID for phones, tablets, laptops, printers... my real network I'll say
    1 (2.4ghz only) SSID for IOT -> access to only 1 machine on lan (NAS:mandatory) and internet (I'll add a firewall rule if I need to cut it off)
    1 Guest (not very important right now) (can even be on the same as IOT) will be turn on/off manually only sometimes, if not shared with IOT
    1 SSID for nordvpn always being connected to specified server in country 1 -> for a max of 2 wireless clients simultaneously, no access to lan from this ssid
    1 SSID for nordvpn always being connected to specified server in country 2 -> for a max of 2 wireless clients simultaneously, no access to lan from this ssid

  4. as I should have fiber installed (<1gbps)...some day... I'll try to have the isp router as bridge or passthrough... if I can... (no tv, no phone) and still use the mt6000 as my main router, so one RJ45 from isp router (don't know brand or anything... don't know even a when) to one of the 1gbps port for wan (but if I have a to use the 2.5Gbp wan port of the Flint2, I'll still have one 2.5gb to use for the lan so it's ok). Will it work without touching anything or will I need to modify maybe firwall rules ?

optional : It would be nice if I could use my tethering phone as backup if needed, without having to reconfigure everything :slight_smile:

The 4th question is a "should be" soon.. may be... it's just to be as much prepare as I can be when fiber will arrive... and if it's outside of the forum "reach" I'll understand.

Of course I am open to ideas to do this nicely or better than this...even doing vlan if I need to...

thx in advance for your time. :slight_smile:

I can't even with this OP. Use paragraphs & complete sentences. Properly format this mess of questions & use bullet points or cut them up into individual threads. Can the emoticons; this ain't Facebook & no one here is your boyfriend.

The short form answers are yes, but &/or almost/not quite but there's no way in Hell I'm going to post any of the technical steps to do so in response to something that looks like was lost on its way to Tik Tok.

Well, ok…. Sorry for trying to be relatively nice and give detailed info….

  • how can I, if this is possible, backup and restore all parameters and software parameters for the lowest downtime possible ? if yes how ?

  • Bruce already made various post about it in firmware 4.7 but is the same for 4.8.2 (21.01) to create 4 SSIDs ,

  • how can I do to that : 2 of these ssids always be connected to 2 differents nordvpn servers ?

better for you ?

JFC. Some one else can answer; this isn't worth the error rate.

Hi

1 & 2, You can back up and restore using Luci.

3, Please refer to Bruce's answer. A quick test on my end using firmware 4.8.x worked just fine.

4, For bridging, you may need to use PPPoE WAN access.
If you're using Passthrough, the default DHCP setting should work.

Hi Will,

Thanks for the answer,

1&2 perfect, I wasn’t sure the backup was a full backup as it stated: “of the current configuration files”

3, this post for example (or the one you mention), but as I am on the openwrt 21.02 and firmware 4.8.2 I wasn’t sure it was the same.

If it’s ok perfect for me, I can delay my update to 24.x and find a way to connect the new ssid1 to vpn server 1, and the new ssid2 to vpn server 2.

4.I won’t be able to test this until I got a “real” connection, I’ll check the doc in the meantime.

Thanks for your time!