OpenVPN and Internal DNS on ER7206 in Standalone Mode

OpenVPN and Internal DNS on ER7206 in Standalone Mode

OpenVPN and Internal DNS on ER7206 in Standalone Mode
OpenVPN and Internal DNS on ER7206 in Standalone Mode
a week ago - last edited Tuesday
Model: ER7206 (TL-ER7206)  
Hardware Version: V2
Firmware Version: V2.6_2.2.0 Build 20250218

Hi TP-Link Community,

 

I’m using a TP-Link ER7206 (latest firmware) in Standalone Mode and need help with two things:

✅ 1. OpenVPN Access to LAN

I’ve configured OpenVPN, and remote clients can connect, but they can’t reach internal devices on the LAN (192.168.11.0/24).

I initially used the same subnet for the VPN IP Pool (192.168.11.0/24), which caused routing issues.

I’ve now changed the VPN pool to a non-overlapping subnet:

  • LAN: 192.168.11.0/24

  • VPN Pool: 10.8.0.0/24

  • “Allow clients to access the LAN” is enabled

  • I also added route 192.168.11.0 255.255.255.0 to the client config

But the VPN clients still can’t reach internal hosts.

✅ 2. Internal DNS for beast.dk

I host internal services under beast.dk. Externally, it resolves fine via public DNS.

Internally, I want beast.dk to resolve to its local IP (192.168.11.11). I’ve added a LAN DNS entry in the ER7206, and it works if clients use the router as DNS.

However, clients using external DNS (e.g. 1.1.1.1) bypass the override.

❓ Questions:

  1. What else is needed to allow VPN clients to access the LAN?

  2. Is there a way to enforce internal DNS or support NAT loopback in Standalone Mode?

  3.  

Thanks in advance!

  0      
  0      
#1
Options
1 Accepted Solution
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode-Solution
Monday - last edited Tuesday

  @BennyNissen 

 

I have it working. I think the problem was related to the fact that the VPN was using UDP but the NAT virtual servers only allowed TCP/IP?

 

Thank you for all suggestions.

Recommended Solution
  0  
  0  
#4
Options
3 Reply
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode
a week ago

  @BennyNissen 

 

1. remove all manual routing. you should not route anything

 

  0  
  0  
#2
Options
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode
a week ago

Hi @BennyNissen 

Thanks for posting in our business forum.

For the second question, are you using the DDNS? If yes, then it should loop back.

If you don't, the behaviors are expected.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#3
Options
Re:OpenVPN and Internal DNS on ER7206 in Standalone Mode-Solution
Monday - last edited Tuesday

  @BennyNissen 

 

I have it working. I think the problem was related to the fact that the VPN was using UDP but the NAT virtual servers only allowed TCP/IP?

 

Thank you for all suggestions.

Recommended Solution
  0  
  0  
#4
Options