Help in setting up VPN exceptions

****Hi everybody,

I have a very simple question.
Similarly to the author of this post, I set up Proton VPN following the guide provided on their site to route all my traffic through their VPN.

Now, my problem is different: I’d like to add exceptions for a few streaming sites I need to access with my regular connection, bypassing the VPN. I come from web development, so I have very basic networking knowledge; I’m planning on amending this as soon as possible (if someone has some useful links or starting points, they’re appreciated :smiley: )… but in the meantime, the interface and settings are still very complicated matter for me, and I probably risk messing up.

I discovered this nice forum and would like to ask for guidance.

I’m on RouterOS 7.18.2.

Thanks in advance!

Would you be so kind as to give more details on what VPN type is being deployed - Wireguard, IPsec? An export of the configuration would be most helpful:

/export file=anynameyouwish (minus sensitive info)

How do you propose to identify sites that users traffic is supposed to use the local WAN?
Are we talking about programs (like youtube or google), that the router cannot do as its DPI dependent. Then the answer is NO.
Are we talking about static public WANIPs ( or dynamic ones that can be identified by dydns ?) is so very doable.
Something else???

/export file=anynameyouwish (minus router serial number, any public WANIP information, vpn keys )

Thanks for your replies.

  • I’m using Wireguard, as the guide provided by the VPN (see above) instructed me to do.
  • As for the way I’m planning to identify the sites, it’s mainly primevideo.com, so I guess it shouldn’t be difficult to get their IP (but maybe I need the IP for their CDNs also? As I said, I’m completely new to networking; be merciful :slight_smile: )

An export of the configuration would be most helpful

I’d be glad to provide it – but what menu level do you need me to

export compact

?

Thanks again for your time.

(Edit: clarification)

A full one through the command we posted - you paste it in the CLI, download the resulting file on your computer and edit out sensitive info with Notepad

I think it falls under the same category as Youtube and Google, so don’t have high expectations for it to work without DPI