VPN on Synology

Currently reading
VPN on Synology

303
55
NAS
DS923+ (16GB)
Router
  1. RT6600ax
Operating system
  1. Windows
I've been playing with the idea of using an external VPN-service/connection for my DS918+ so it's external IP gets "changed". My question is, how does this affect my NAS on local network? Can I still access the NAS using the local IP-number or how does it work?
 
Yes. Thanks.
How does this work if I've got a webserver running and some other stuff aswell that requires portforwarding?
Then you get into trouble. I wouldn't suggest running it like that. Depending on your VPN needs and other services on the NAS, I would recommend separating the two.

You can still run both operations on the same unit if you do not have another device that will do the VPN role by putting VPN needs inside a VPN docker container or as a separate VDSM (virtual DSM) using the VMM package and then put that VDSM under a VPN. After that use that VDSM as a "gateway" to get outside under VPN protection. In this case, you will still have your "bare metal" layer of the NAS (the default DSM) open for hosting without any problems regarding port forward towards services that you want to host.

I run my LAN that way with 0 problems and even though I have options when it comes to VPN devices, running it this way is still stronger and better than running it on a router for example (for better performance while under VPN I mean).
 
Upvote 0
The VPN-supplier I looked at actually supported some kind of portforwarding but only with a handful of ports... :/
Few that do port forward indeed only a handful and that can change at any time. I would still suggest separating the vpn from none vpn element on your end.
 
Upvote 0
You could run reverse proxy on another NAS on your local network, and have it forward to the target machine.
So for example, webserver.yourdomain.com on your machine that's open to the internet would forward to [targetmachinelanaddress]:80.
tautulli.yourdomain.com on the machine that's open to the internet would forward to [targetmachinelanaddress]:8181 , etc.
 
Upvote 0
Yes you can still use it locally. Guessing you want to connect your nas to a 3rd party vpn provider? Local configuration will remain the same.
What are your thoughts on using a Synology NAS as a VPN server? It would still sit behind a Firewall and NAT, but have port 1194 UDP forwarded to it. I just think it has a really clean integration with Active Directory, so users could use OpenVPN and authenticate with their AD credentials.
 
Upvote 0
I do that as well, however am using wireguard as I've had no end of issues with OpenVPN and Wireguard has just worked flawlessly since I set it up. My firewall is configured to block all access to my NAS outside of my country except on the Wireguard port.
 
Upvote 0

Create an account or login to comment

You must be a member in order to leave a comment

Create account

Create an account on our community. It's easy!

Log in

Already have an account? Log in here.

Similar threads

Hi, Without VDSM and Docker (as it is now), are you getting long hibernation times? According to my...
Replies
4
Views
3,312
  • Question
It sounds that the main focus is a LAN reconfiguration of DHCP and DNS services so that dynamically...
Replies
1
Views
528
What I've found out: 1.) If I turn off the Kill Switch, then I'm good to go with the local devices 2.) If...
Replies
2
Views
2,309
Also, Quick Connect isn't available for all services... especially if you are going to be relying on the...
Replies
3
Views
1,113
New User Question. I know I can connect one house to another through a VPN, but is it possible to do the...
Replies
0
Views
1,106

Welcome to SynoForum.com!

SynoForum.com is an unofficial Synology forum for NAS owners and enthusiasts.

Registration is free, easy and fast!

Back
Top