¿Cómo configuro el cliente VPN para acceder a un servidor VPN remoto?

A VPN client is a terminal device or software used to establish a secure connection between a user and a VPN server.

 

What is VPN?

VPN (Virtual Private Network) helps you access internet resources remotely, securely, and privately with tunneling technology. The VPN encrypts your personal information and hides your IP address from the public when you use the internet. To the users of the VPN, it will look like the computers were directly connected to each other.

 

Common Network Topology:

 

 

Here we take WR2100 as a demonstration.

 

Step 1: Open a web browser and go to http://cudy.net or http://192.168.10.1

For details, please refer to How to log into the web interface of Cudy Router?

Step 2: Click on General Settings->VPN and enable VPN.

Default Rule: Allow all devices or Ban all devices to use VPN.

To specify the device, click on System Status-> Devices->VPN to enable or disable it.

Site-to-Site: Allow the devices in two sites to communicate with each other.

VPN Policy: 

Disable: No additional setting.

VPN kill switch: Turn off the Internet connectivity when the VPN connection is lost.

Domain: Specify which domains go through the VPN and which don't

Remote Subnet: Specify what subnets go through the VPN and which don't

Step 3: In the Protocol list, select the one you need and enter the VPN information provided by your VPN provider.

 

• PPTP VPN

Enter the VPN server address (for example, 113.92.73.163) and the VPN Username and password provided by your VPN provider.

 

• L2TP VPN

Enter the VPN server address (for example 113.92.73.163), VPN username and password, and pre-shared key provided by your VPN provider.

If your VPN provider also provides you the tunnel IP which binds with the account, you can enable the Use custom tunnel IP option.

 

• OpenVPN 

Click on Browser to import the configuration file provided by your VPN provider.

 

 

• WireGuard VPN

 

Click on Browser to import the configuration file provided by your VPN provider.

The Interface and Peer will synchronize automatically from your VPN Provider's CONF File.

 

 

 

• ZeroTier Slave

Type in the ZeroTier Network ID and Gateway provided by the ZeroTier Master. The Gateway can be found on VPN Status part.

 

 

Related Article: How to remote connect Cudy Router via Zerotier?-Cudy Home

Regresar al blog

138 comentarios

@Dear Mike,
I see. I will forward your advice to our product manager for evaluating.

“AmneziaWG adds obfuscation techniques, such as modifying packet headers and appending random data, to disguise its traffic as other UDP protocols and blend in with normal internet traffic. In essence, AmneziaWG maintains WireGuard’s performance and security but adds a layer of stealth, making it suitable for use in regions with strict internet censorship.

They are opensource – https://github.com/amnezia-vpn

ps: on keenetic devices (but I prefer Cudy anyway ;) there is even a possibility to connect by AmneziaWG using Wireguard option in Keenetic (instuction is only in russian though – https://docs.amnezia.org/documentation/instructions/keenetic-os-awg/)

In other words – almost nothing works here (in Russia) except Amnezia (based on WG) and Shadowsocks. But both of them are not available on TR3000 device yet :("

Support

Hello, I changed my approach, I’m using a raspberry pi as an ovpn server but cudy gives me this error:Wed Dec 3 00:36:41 2025 daemon.err openvpn(client)24639: Options error: unknown tls-version-min parameter: 1.3
Wed Dec 3 00:36:41 2025 daemon.warn openvpn(client)24639: Use —help for more information.
How to fix???

Arturo David

Yes, there is a huge difference. Wireguard is blocked in Russia (so it doesn’t work and nobody would use it) while AmneziaWG still works.

AmneziaWG adds obfuscation techniques, such as modifying packet headers and appending random data, to disguise its traffic as other UDP protocols and blend in with normal internet traffic. In essence, AmneziaWG maintains WireGuard’s performance and security but adds a layer of stealth, making it suitable for use in regions with strict internet censorship.

They are opensource – https://github.com/amnezia-vpn

ps: on keenetic devices (but I prefer Cudy anyway ;) there is even a possibility to connect by AmneziaWG using Wireguard option in Keenetic (instuction is only in russian though – https://docs.amnezia.org/documentation/instructions/keenetic-os-awg/)

In other words – almost nothing works here (in Russia) except Amnezia (based on WG) and Shadowsocks. But both of them are not available on TR3000 device yet :(

“@Dear Mike,
Is there any difference betweem AmneziaWG VPN and standard Wireguard VPN? Can you send us some introduction about AmneziaWG VPN?”

“I do support question about AmneziaWG VPN. Is there a possibility that you’ll add this protocol in future versions?”

Mike

@Dear Arturo,
OK. That is a good news.
“I add that from the lan2 network to the lan1 network the ping works regardless of the state of the site to site button”

Support

I add that from the lan2 network to the lan1 network the ping works regardless of the state of the site to site button

Arturo David

Deja un comentario