Two Routers, 1 modem... 1 standard network with parental controls and second with VPN

ssss1eeee2

Prominent
Jul 12, 2017
3
0
510
I have two routers and one internet connection (served by a cable modem).

Router 1 – Netgear Nighthawk X4S R7800

Router 2 – Asus R-N66U

Modem – Virgin Media Super Hub

VPN provider - HMA

I would like to connect Router 1 (192.169.1.1, 255.255.255.0) to the modem to serve as my ‘open’ network with the SSID set to Netgear-UK. I would then like to connect Router 2 (192.169.2.1, 255.255.255.0) to the internet via a LAN port on Router 1 but for the connection to the internet to be unfiltered by Router 1 and to act as a direct internet connection, the SSID for Router 2 is set to Asus-VPN as this is the network I would like to have as my independent VPN.
I originally achieved this using the DMZ setting on the Router 1 but now cannot get it working again…

The purpose for running the two networks is to ensure that I can enable suitable parental controls on the Netgear (Router 1) – via OpenDNS – as well as ensure that I fo not run into any issues with any UK based catch-up services.

Any suggestions or ideas appreciated!!
 
While I'm not sure I can help, additional info on
I originally achieved this using the DMZ setting on the Router 1 but now cannot get it working again…
would help someone who could.

ABout DMZ: If you temporary connect some kind of web server instead of VPN router (or enable WEB interface on that router' WAN port), can you connect it from the outside? This will tell you whether the DMZ settings are OK
 

ssss1eeee2

Prominent
Jul 12, 2017
3
0
510
thanks for your reply Alabalcho!

What I am trying to achieve is to share an unfiltered and 'pure' internet connection to my second router (the ASUS). The Netgear router is for my children and so I have it locked down in terms of what it can access, so no Facebook or other social media. It is also my primary router for UK catch-up services and smart home stuff.

The second router (the ASUS) is for the adults in the household and is unfiltered, the fact that I run a VPN on it is secondary. On this router which is set up as a second wireless network you should be able to access Facebook and other social media.

Interestingly at the moment I have the two networks up and running but the secondary router (the ASUS) is not allowing me to connect to Facebook when the VPN is off but is allowing me when the VPN is on... not so surprising I guess as the traffic is private... but I would like to be able to access all of the internet from my second router and so that is the problem I am trying to solve. Unfortunately this is really testing my limited knowledge of networking...
 
When VPN is not active, your second router (since it connects to the LAN port on the primary one) acts just as pipe to the main router, therefore clients on the second router are no different than your kids - so, no FB for you. And it is just a matter of time until your kids learn this trick, too, so make sure they cannot change IP configuration on devices they are using.

When VPN on the second router is active, your FB request goes encrypted (and untraceable by the first router) to the end of VPN channel.

And about DMZ: It plays a role only when you are "dialing-in" into your primary router (eg having a private web server running at home).

Last but not least: You've said you are using OpenDNS. Try setting eg Google DNS servers (8.8.8.8, 8.8.4.4) at the second router. That way, you might be able to reach FB even without VPN.
 

ssss1eeee2

Prominent
Jul 12, 2017
3
0
510
many thanks, just to confuse things I have my dns servers on the second router set to those provided by the unlocator service - for US catch up services. but still blocks my FB unless under VPN. All seems to work(-ish) at moment.

thanks for your help :)