Page 1 of 1

LAN quota limit

Posted: Tue Sep 17, 2013 8:37 am
by Metro
Hello,

I have a VPN connection to a cellular router with a single LAN port that provides access to the Internet through cellular 3G router, I converted a TP-Link TL-WR941ND v2 to gargoyle for the direct purpose of limiting the monthly data usage for the devices connected as we have gone over limit of the cellular account. So at our office we have a Lynksys rv082 providing a gateway to gateway IPSEC tunnel and the VPN tunnel can only provide connection to one subnet which is 192.168.5.0/24, the cellular router on our client site then links to the tunnel and has and ip on that subnet (say 192.168.5.1, to use the quota limit I have to plug the cellular into the wan port of the TL-WR941ND, but the devices I need access to would be connected to the LAN ports of the TL-WR941ND, and I want to access each ip on the LAN side! it is currently connected without the TL-WR941ND and all the devices are on the same subnet 192.168.5.0/24. I can't use port forwarding cause the connecting I need to establish form the office side is modbus and each connection can not have the option to specify port and all use port 502 for modbus anyway. So what I am trying to ask is can I setup a static route in the TL-WR941ND to allow access from wan to LAN ip's if I have to have different subnets between wan and LAN, OR can I apply the quota if the cellular router and all devices are connected to the lan ports and on the same subnet 192.168.5.0/24 if I set the cellular router as the gateway? Obviously I am confused, I just want to set a limit for all devices connecting through the cellular router to X GB per month, but still be able to directly poll the IPs from the office through the VPN to the device on the LAN side of the TL-WR941ND. If gargoyle can't do it can anyone suggest another way? Your help will be greatly appreciated!

Thanks in advance ;)

Re: LAN quota limit

Posted: Wed Sep 18, 2013 8:33 pm
by pbix
There probably is a way to put in the routes you need but I do not know how to do it in a way which will work with the Quota system. But if you experiment you may get it to work.

How about putting the TL-WR941ND at your office load IPSEC on it and tunnel to your remote site? At your remote site just a simple switch behind the 3G modem? Then the Quota is monitored at your office.