Quote from: zan on March 12, 2024, 11:28:06 AMIndeed, that was it, although now when I connect to VPN, any port forwarding on my ISP's IP is blocked.
Your pic shows NAT outbound rules, you also need pass rules on each interface:
On LAN interface, create a pass rule with destination: !(not) This firewall, gateway: WAN.
Create a same rule on LAN2 interface, except with gateway: VPNWAN.
VPN OFF => 95.231.234.179:61881 => open
VPN ON => 95.231.234.179:61881 => closed
95.231.234.179 is my ISP's IP.
It seems that stuff can get it but can't get out...
https://imgur.com/a/xxsbgxe