Disclaimer: Installation and use of any software made by third party developers is at your own discretion and liability. We share our best practices with third party software but do not provide customer support for them.This guide is intended for v3.0-r33986 std (12/04/17).
FlashRouters offers plug and play DD-WRT Routers preconfigured Private Internet Access Routers for this setup.
By default, DD-WRT may use your ISP's DNS servers using DHCP. For privacy reasons, we'll instead configure DD-WRT to explicitly use alternate DNS servers.
You can find our CA Certificate here, which will be useful later.
Step 1. In the DD-WRT Administrative Interface, navigate to Setup > Basic Setup.
Step 2. Under Network Address Server Settings (DHCP), set:
Step 3. Static DNS 1 = 184.108.40.206
Step 4. Static DNS 2 = 220.127.116.11
Step 5. Use DNSMasq for DHCP = Checked
Step 6. Use DNSMasq for DNS = Checked
Step 7. DHCP-Authoritative = Checked
Step 8. Save and Apply Settings.
Step 9 To Disable IPv6, Navigate to Setup > IPV6
Step 10. Set IPv6 to Disable, then Save & Apply Settings.
Step 11. Disable IPv6
Step 12. To Enable Local DNS, Navigate to Services > Services
Step 13. If there is a DNS Suffix, Remove that
Step 14. Under DHCP Server, Set Used Domain to LAN & WLAN
Step 15. Under DNSMasq Ensure that DNSMasq, Local DNS, and No DNS Rebind are all enabled
Step 16. Save & Apply Settings.
Step 17. Navigate to Service > VPN
Step 18. Under OpenVPN Client, set Start OpenVPN Client = Enable. Other options will appear.
Step 19. Set Advanced Options to Enable, More options will appear.
Step 20. Set the following:
Or if you prefer to use a specific location, You can find the full list of locations here: https://www.privateinternetaccess.com/pages/network
Step 21. In Additional Config, Type:
Step 22 Download the file https://www.privateinternetaccess.com/openvpn/ca.rsa.2048.crt
Step 23. Right-Click the ca.rsa.2048 file, and Choose Open With, Then choose Notepad
Highlight the full contents of the ca.rsa.2048 file by pressing Ctrl+A then copy with Ctrl+C
In DD-WRT, Paste, (Ctrl+P) the contents in the CA Cert field. Be sure the entire text gets pasted in, including "-----BEGIN CERTIFICATE-----" and "-----END CERTIFICATE-----".
Step 26. Save and Apply Settings
To Verify the VPN is Working, Navigate to Status > OpenVPN
Under State, you should see the message "Client: CONNECTED SUCCESS"