I am sorry... it is step 10...Now corrected this in original post...
Yes... we do not need this in your case (routing everything* over VPN)*SenseWAN traffic itself will not be routed over VPN... if you really need this, we will have a look later.
Nothing / any.We do not want some clients (in an alias) to be routed over VPN, we want all (any).
Sorry... put LAN net there!
More details are welcome PLease try a ping from a LAN client / PC to 8.8.8.8 and do the same for google.comI assume there is (still) just a DNS problem issueing "no internet"...
Fine so far... I don't know how to deal with this DNS issue at the moment, but we will see later...Now just re-check step 3 and do those tests + screenshots...Step 3 is to achieve that LAN clients will use VPN only.3a) Go to Firewall: Rules: LAN and find the v4 default allow rule. Edit it and set the VPN as gateway.3b) At Firewall: Rules: LAN find the v6 default allow rule. Disable it to make sure no traffic will go over WAN via v6 overriding your VPN. This is only suitable if IPv6 is activated for LAN/WAN.3c) Post a screenshot of System: Routes: Status3d) Traceroute 8.8.8.8 from LAN client (eg PC, not from sense!), post the output.3e) Traceroute google.com from LAN client (eg PC, not from sense!), post the output.