portmaster icon indicating copy to clipboard operation
portmaster copied to clipboard

Ability to use PM as a Kill Switch for OpenVPN connections

Open aberja opened this issue 3 years ago • 0 comments

What would you like to add or change?: I would like the ability to use PM as a kill switch where it stops all traffic when an OpenVPN connection disconnects.

Why do you and others need this?: This is required to protect against the issue noted in safing.io blog post https://safing.io/blog/2022/09/06/spn-vs-vpns/ : But when (not if) the connection to your VPN provider breaks - for whatever reason - your operating system will disable the virtual network and automatically change the default route to point to your ISP. This happens in a blink of an eye - your VPN software will not even notice.

With the ufw firewall in Debian, I can currently ensure that my system uses my OpenVPN connections and does not automatically change to my ISP. However, this does not seem possible with PM. If it is, I would be grateful if you would provide a link to the documentation.

aberja avatar Nov 01 '22 16:11 aberja