Cisco IPSec -OpenWRT/LEDE Router
1. Install OpenWRT/LEDE project on your router and add vpnc, vpnc-scripts and luci-proto-vpnc using System | Software menu item
2. Add new interface myVPN using Network | Interfaces and change protocol to VPNC.
Now you can setup VPN Server IP address, user name and password, group name and password.
Auth Group: (leave it empty)
Group Password: proxin2010
Important! In my case output interface is wan, because WAN port connected to outgoing modem!and add myVPN interface to the lan firewall section of interface settings!
3. Switch now to the Network | Firewall and navigate to Custom Rules
You have to add forwarding rules for new myVPN interfaceiptables -A forwarding_rule -o vpn-myVPN -j ACCEPT
iptables -A forwarding_rule -i vpn-myVPN -j ACCEPT
iptables -t nat -A postrouting_rule -o vpn-myVPN -j MASQUERADE4. Add static routing to the subnetworks behind VPN connection as last step under Network | Static routes
Use the latest subnetwork:
myVPN Target IP: 10.8.0.0/255.255.0.0