A VPN client is a terminal device or software used to establish a secure connection between a user and a VPN server.
What is VPN?
VPN (Virtual Private Network) helps you access internet resources remotely, securely, and privately with tunneling technology. The VPN encrypts your personal information and hides your IP address from the public when you use the internet. To the users of the VPN, it will look like the computers were directly connected to each other.
Common Network Topology:

Here we take WR2100 as a demonstration.
Step 1: Open a web browser and go to http://cudy.net or http://192.168.10.1.
For details, please refer to How to log into the web interface of Cudy Router?
Step 2: Click on General Settings->VPN and enable VPN.

Default Rule: Allow all devices or Ban all devices to use VPN.
To specify the device, click on System Status-> Devices->VPN to enable or disable it.

Site-to-Site: Allow the devices in two sites to communicate with each other.
VPN Policy:
Disable: No additional setting.
VPN kill switch: Turn off the Internet connectivity when the VPN connection is lost.
Domain: Specify which domains go through the VPN and which don't
Remote Subnet: Specify what subnets go through the VPN and which don't
Step 3: In the Protocol list, select the one you need and enter the VPN information provided by your VPN provider.
• PPTP VPN
Enter the VPN server address (for example, 113.92.73.163) and the VPN Username and password provided by your VPN provider.

• L2TP VPN
Enter the VPN server address (for example 113.92.73.163), VPN username and password, and pre-shared key provided by your VPN provider.
If your VPN provider also provides you the tunnel IP which binds with the account, you can enable the Use custom tunnel IP option.

• OpenVPN
Click on Browser to import the configuration file provided by your VPN provider.


• WireGuard VPN
Click on Browser to import the configuration file provided by your VPN provider.

The Interface and Peer will synchronize automatically from your VPN Provider's CONF File.

• ZeroTier Slave
Type in the ZeroTier Network ID and Gateway provided by the ZeroTier Master. The Gateway can be found on VPN Status part.


Related Article: How to remote connect Cudy Router via Zerotier?-Cudy Home
138 comments
Hello, I have a problem with Wireguard site to site vpn. It’s connecting to destination router, however I cannot access local subnet from remote subnet. It’s working the other way. I also spotted that route 0.0.0.0/0 is injected to routing table despite the fact I only specified remote subnets as destination for vpn tunnel policy. What is the solution as I cannot access ssh and check and correct vpn settings manually?
@Vit,
Dear Customer,
Thank you for contacting Cudy support team.
Our technical support has contacted you via email. Please check.
“hello!
wr3000h vpn settings work incorrectly. when i setup openvpn or wireguard clients some settings don’t work. don’t work the most important setting – VPN Policy (Domain). Rule Allow listed only Domains doesn’t work.
maybe you have new firmware or some solution.
Thanks.
| HW: WR3000H V1.0 | FW: 2.2.7-20240906-085755 |”
hello!
wr3000h vpn settings work incorrectly. when i setup openvpn or wireguard clients some settings don’t work. don’t work the most important setting – VPN Policy (Domain). Rule Allow listed only Domains doesn’t work.
maybe you have new firmware or some solution.
Thanks.
| HW: WR3000H V1.0 | FW: 2.2.7-20240906-085755 |
@V Singh,
Dear Customer,
Thank you for contacting Cudy support team.
Our technical support has sent you the solutions via email. Please check.
“Hi, I’m trying to utilise two Cudy LT700 routers for site to site VPN connection. Server and client both are running on 4G sims. Server has a DDNS setup which client is able to reach using TRACEROUTE and NSLOOKUP. But after importing a VPN config file (tried with both OpenVPN and WireGuard), client still shows not connected to the VPN. The setups use default values for both VPNs. Any thoughts please to get this working? How shall I use the server hostname to get this resolved? Shall I also need to add DDNS for client and add to the client list on server?”
Hi, I’m trying to utilise two Cudy LT700 routers for site to site VPN connection. Server and client both are running on 4G sims. Server has a DDNS setup which client is able to reach using TRACEROUTE and NSLOOKUP. But after importing a VPN config file (tried with both OpenVPN and WireGuard), client still shows not connected to the VPN. The setups use default values for both VPNs. Any thoughts please to get this working? How shall I use the server hostname to get this resolved? Shall I also need to add DDNS for client and add to the client list on server?