Bypassing WireGuard VPN for Specific Sites on Flint 2

I’m running a GL.iNet Flint 2 with WireGuard via Proton VPN. I use VPN Policy-Based Routing (PBR) to route my PC through the VPN while bypassing it for other devices (via MAC addresses).

Recently, sites like Virgin Australia and Kayo started blocking VPN traffic, and I want to bypass the VPN only for these sites on my PC while keeping other traffic through the VPN.

Current setup:

  • Flint 2
  • Proton VPN with WireGuard
  • PBR by client device

Any recommendations?

Hello,

Please try upgrading to the v4.8.0 firmware for Flint2, the VPN policy rule is richer in v4.8.0, it supports to based "client + domain/IP" to go to VPN at the same time.
I think it probably meets your needs.

1 Like

Woah, ok, nice if that is it. When is it likely out of beta?

Hi. Will this feature come to the MT2500?

Downloaded. So this should work? Does the websites immediately get excluded, or reboot needed?

Tunnel is:

Or do I need to do another tunnel that is "All clients" and then exclude those targets like I have? :thinking: , little confused there?

Have I setup the exclusions ONLY based on those already excluded devices? :laughing:

Edit: seems to be working for virginaustralia - was a few minutes.

Any pro tips for gathering IP addresses for parts of a 'website'?

Like virgin seemingly transitions to their frequent flyer website; so I had to unblock that as well... and kayo seems to not immediately block; but doesn't properly load - so I assume something else getting called and that is blocked on VPN...

Yes. The v4.8.0 firmware is coming soon for MT2500.

1 Like

Click on the "apply", the rule will take effect/work.

This "All Ohter Traffic" contains the traffic from other clients, other domain or IPs that are not in the Primary Tunnel, let them go to WAN (without VPN).

Just set up the Primary Tunnel according to your needs.

you can Google or Github to find out if anyone shared the complete list/rules.

1 Like

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.