You may need to connect the device that you want to port forward directly on AP1300, not your mesh router. Then use vpn policy.

That’s no problem, but I already tried to do that (see my second post in this thread)? It didn’t seem to work. To clarify, what you’re suggesting is:

  1. set up port forward from FTTH to GL-AP1300 LAN address
  2. Activate guest wifi on GL-AP1300
  3. set up port forward from GL-AP1300 to device LAN address (based on IP assigned in the guest network)
  4. set up VPN exclusion for guest wifi

Is that correct? If so, can you please tell me exactly how to execute 3)? I tried both WAN as well as guest zone but both had the port closed as soon as OpenVPN was activated

Thanks!