ich would like to keep VPN allways on with the force VPN option.

Now i have 1 destination ip, that shall not go through the VPN.

At the moment i would try this, what do you think?:

ip rule add to lookup 20
ip route add table 20 default via dev eth0

I combine your command and

iptables -A zone_lan_forward -d -o eth0 -j ACCEPT

it works.

You can comfirm the result by


cat /proc/net/nf_conntrack | grep icmp | grep

and check the second dst field.




i used the Static IPv4 Routes Interface GUI in the Advanced settings and it works.


