Come posso impostare il client VPN per accedere a un server VPN remoto?

Un client VPN è un dispositivo terminale o un software utilizzato per stabilire una connessione sicura tra un utente e un server VPN.

 

Che cos'è la VPN?

VPN (Virtual Private Network) ti aiuta ad accedere alle risorse Internet in remoto, in modo sicuro e privato con la tecnologia di tunneling. La VPN crittografa le tue informazioni personali e nasconde il tuo indirizzo IP al pubblico quando usi Internet. Agli utenti della VPN sembrerà che i computer fossero direttamente collegati tra loro.

 

Topologia di rete comune:

 

 

Qui prendiamo WR2100 come dimostrazione.

 

Passaggio 1:  Apri un browser web e vai a http://cudy.net o http://192.168.10.1

Per i dettagli, fare riferimento a Come accedere all'interfaccia web di Cudy Router?

Passaggio 2: fai clic su Impostazioni generali->VPN e attiva VPN.

Regola predefinita: Consenti a tutti i dispositivi o Blocca a tutti i dispositivi di utilizzare la VPN.

Per specificare il dispositivo, fare clic su Stato del sistema- > Dispositivi->VPN per attivarlo o disattivarlo.

Da sito a sito: < /strong>Consenti ai dispositivi in ​​due siti di comunicare tra loro.

Politica VPN: 

Disabilita: nessuna impostazione aggiuntiva.

Kill switch VPN: Disattiva la connettività Internet quando si perde la connessione VPN.

Dominio: specifica quali domini passano attraverso la VPN e che non lo fanno

Sottorete remota: specifica quali sottoreti passano attraverso la VPN e quali no

Passaggio 3: Nella Protocollo , seleziona quello che ti serve e inserisci le informazioni sulla VPN fornite dal tuo provider VPN.

 

• VPN PPTP

Inserisci l'indirizzo del server VPN (ad esempio, 113.92.73.163) e il nome utente e la password VPN fornito dal tuo provider VPN.

 

• VPN L2TP

Inserisci l'indirizzo del server VPN (ad esempio 113.92.73.163), nome utente e password VPN e chiave precondivisa forniti dal tuo Fornitore VPN.

Se il tuo provider VPN ti fornisce anche l'IP del tunnel che si collega all'account, puoi abilitare Utilizza l'opzione IP tunnel personalizzato.

 

• OpenVPN < /span>

Fare clic su Browser per importare il file di configurazione fornito da il tuo provider VPN.

 

 

• WireGuard VPN

 

Fare clic su Browser per importare il file di configurazione fornito da il tuo provider VPN.

L'interfaccia e Peer si sincronizzerà automaticamente dal file CONF del tuo provider VPN.

 

 

 

• ZeroTier Slave

Digita ID rete ZeroTier e Gateway fornito da ZeroTier Master. Il gateway è disponibile nella parte Stato VPN.

 

 

Articolo correlato: Come connettere in remoto Cudy Router tramite Zerotier?-Cudy Home

Torna al blog

186 commenti

@Dear Felice,
Please enable the VPN kill switch function, Then all the traffics from the clients will go through VPN connection.

“Hi,
I am using a Cudy AX3000 router configured as an OpenVPN client (ExpressVPN).
I have observed the following behavior:

The router itself connects correctly to the VPN and gets an IP in the VPN country. However, LAN clients do not appear to have their DNS traffic routed through the VPN tunnel by default. DNS queries from LAN clients are resolved via the WAN interface unless additional workarounds are implemented.
I would like to clarify:

1. Does the OpenVPN client on this router support full-tunnel routing for all LAN devices (i.e. all traffic, including DNS, forced through the VPN interface)?
2. Is there a setting to ensure DNS queries from LAN clients are always routed through the VPN tunnel and not via the WAN?
3. Does the “VPN kill switch” function enforce routing of LAN traffic through the VPN, or only block traffic when the VPN is down?
4. Are there firmware versions or models that support proper policy-based routing (e.g. select devices or all LAN traffic via VPN)?

My goal is to have all LAN devices fully routed through the VPN, including DNS, without relying on external DNS proxies or additional devices.

Thank you for your support."

Support

Hi,
I am using a Cudy AX3000 router configured as an OpenVPN client (ExpressVPN).
I have observed the following behavior:

The router itself connects correctly to the VPN and gets an IP in the VPN country. However, LAN clients do not appear to have their DNS traffic routed through the VPN tunnel by default. DNS queries from LAN clients are resolved via the WAN interface unless additional workarounds are implemented.

I would like to clarify:

1. Does the OpenVPN client on this router support full-tunnel routing for all LAN devices (i.e. all traffic, including DNS, forced through the VPN interface)?
2. Is there a setting to ensure DNS queries from LAN clients are always routed through the VPN tunnel and not via the WAN?
3. Does the “VPN kill switch” function enforce routing of LAN traffic through the VPN, or only block traffic when the VPN is down?
4. Are there firmware versions or models that support proper policy-based routing (e.g. select devices or all LAN traffic via VPN)?

My goal is to have all LAN devices fully routed through the VPN, including DNS, without relying on external DNS proxies or additional devices.

Thank you for your support.

Felice

@Dear Rado,

Is it L2TP or L2TP over IPSec? Is there a preshared key?

“I have a AC1200 Wireless mini VPN router.
I would like to setup l2tp VPN via double NATed.
Is there a way how to setup rightID? As currently VPN is failing on IDir ‘’ does not match to ’’”

“I have a AC1200 Wireless mini VPN router.
I would like to setup l2tp VPN via double NATed.
Is there a way how to setup rightID? As currently VPN is failing on IDir ‘’ does not match to ’’”

Support

I have a AC1200 Wireless mini VPN router.
I would like to setup l2tp VPN via double NATed.
Is there a way how to setup rightID? As currently VPN is failing on IDir ‘’ does not match to ’’

Rado

@Dear bledad,
You can open and edit the OpenVPN file and delete this “group nogroup”.
Then upload it to the router again.
“hello , i have error with openvpn
Sun Mar 8 07:43:17 2026 daemon.err openvpn(client)29373: Options error: Unrecognized option or missing or extra parameter(s) in /etc/openvpn/client/client.ovpn:62: gro (2.5.2)
line 62 > group nogroup
I’m stuck
please help
thank”

Support

Lascia un commento