Buffer overflow

NordVPN on OpenWrt 19.07.2 using LuCI web interface Anonymous 06/03/2020 (Wed) 15:01:02
NordVPN on

OpenWrt 19.07.2
using LuCI web interface

router needs about 7mb flash storage to hold default install with LuCI and additional packages

login to router via web interface.

systems > software
"Update lists..." button

"install" button next to
openvpn-openssl then "Install" button in popup window
ip-full then "Install" button in popup window
luci-app-openvpn then check "Overwrite files from other package(s)" in popupwindow then "install" button.

System > Reboot
"Perform reboot" button
Login and "VPN" menu will show up

"OVPN configuration file upload" section at bottom
"name" like <ch88_tcp_zurich> "browse" button to find file <ch88.nordvpn.com.tcp.ovpn> and "upload" button
"OpenVPN instances" section at top
"edit" button for "<ch88.nordvpn.com.tcp.ovpn>"

in "auth-user-pass" box (bottom box) enter on seperate lines

in "config file" (top box) find "auth-user-pass" in text and on the same line add the path to the auth file
it is shown above the bottom box. path will looke something like "/etc/openvpn/<us9999_tcp>.auth"

"Save" button at bottom

*note, if you want to make a chain of vpn connections, use TCP, not udp.
to find the fastest server for your location, go to https://nordvpn.com/servers/tools you can download the recomended ovpn config file from this page. Or download a bunch of them https://downloads.nordcdn.com/configs/archives/servers/ovpn.zip

Network > Interface

"Add new interface..." button
pick a name like <vpntun0>
"protocol" dropdown select "unmanaged"
"interface" dropdown go all the way to the bottom and type "tun0"
"Create Interface" button
"Apply" button
"Save" button

Network > Firewall
"add" button
name something like <vpn>
"input" dropdown "reject"
checkbox "Masquerading"
checkbox "MSS clamping"
"coverd networks" dropdown "<vpntun>"
"Allow forward from source zones" dropdown "lan"
"save" button
"Zones" section
"edit" button for "lan"
"Allow forward to destination zones" dropdown check "vpntun0"

Network > DHCP and DNS
"General Settings" tab
"DNS forwardings" add ip addresses of your vpn's DNS servers and
"Resolv and Hosts Files" tab
"Ignore resolve file" checkbox - or else you will have dns leaks from original connection to isp.
"Save & Apply" button

"OpenVPN instances" section
"enable" check box next to new "<ch88.nordvpn.com.tcp.ovpn>" in list
"Save & Apply" button


network > diagnostics
"traceroute" button
should show lan address assigned by vpn and new vpn server address as first two hops.

status > realtime graphs
"connections" tab
"sources" near top should show isp provided wan address going to "destination" vpn address

check in a web browser at

