- Do NOT connect to your VPN provider’s computer, phone, or tablet app while connected to the FlashRouter’s network. This may cause issues with access to your DD-WRT router settings as well as your internet connection.
- Connect any device in your home network to VPN by joining the FlashRouter’s network.
Search Results for: connection dd-w
Privacy Hero Change Wireless Channel
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
Use these steps to change your Privacy Hero wireless channel.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the Wi-Fi symbol.

4. Click the edit box for the 5GHz network or the 2.4GHz network.

5. Select the new Wireless Channel that you would like to use. Click Save at the bottom of the page.

Privacy Hero Disable Wi-Fi
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
Use these steps to disable your Privacy Hero Wi-Fi so only ethernet connections are active. This is not a required step just a preference.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the Wi-Fi symbol.

4. Set the toggle switches to the off position for the Wi-Fi bands you want to disable.

Flint/Slate GL.iNet ExpressVPN OpenVPN Setup
Preparing for ExpressVPN GL.iNet Setup
Obtain your ExpressVPN OpenVPN Information
If you are not already an ExpressVPN user Sign Up Now.
1. Log in to your account on the ExpressVPN website.

2. Successfully log in with your account information. Select More.

3. Select Manual Configuration and copy the Username and Password that are displayed on the right hand side of the screen.


4. Click the Server Location(s) that you want to connect to. This will download a .ovpn file to your computer that we will use later on. There is no need to open the file. For this example I have selected New York but feel free to select any server listed there or multiple servers.

GL.iNet Router Setup for ExpressVPN
Login to GL.iNet firmware settings in a browser on any computer or smart device connected to the GL.iNet FlashRouter’s network. For more instructions on how to access the firmware settings view our guide here.
1. Navigate to the VPN tab and select OpenVPN Client.

2. Click New Group.

3. Enter ExpressVPN and click the check mark.

4. Select the .ovpn file(s) you downloaded earlier and upload them here.

5. Enter in the ExpressVPN username and password that you obtained earlier. Do NOT enter your ExpressVPN account email and password login. Click Apply.

6. Select VPN Dashboard.

7. Set the Enable toggle to On to begin the ExpressVPN connection.

Verify a successful ExpressVPN connection
- You should now see information appear in the Server Address, Server Listen Port, Traffic Statistics, and Client Virtual IP areas.
- Visit ExpressVPN’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to ExpressVPN.
How to change the ExpressVPN server
- Download a new .ovpn file location as detailed above.
- In the ExpressVPN Group on the OpenVPN Client area click Upload Configuration File and select the new .ovpn file.
- Click VPN Dashboard and then click the Configuration File area and select the new location that you added.
- Click Apply.
Select devices for VPN on Roqos
Select specific devices that you want to pass through the Roqos Core’s VPN tunnel. This is a great solution in instances of streaming services blocking incoming VPN connections or other VPN related service interruptions.
Login to Roqos Core UI web app in a browser on any computer or smart device.
1. Click the navigation menu and select VPN > VPN Out.

2. Select Included Devices.

3. In the Select devices for your VPN Out connection dropdown select Include selected devices and check the devices you want to connect to VPN. Click Save.

Now these devices will be connected to the VPN tunnel. All other devices will bypass the VPN tunnel and use your ISP’s IP Address.
Flint/Slate GL.iNet PureVPN WireGuard Setup
Preparing for PureVPN GL.iNet Setup
Obtain PureVPN WireGuard file
If you are not already an PureVPN user Sign Up Now.
1. Log in to your account on the PureVPN website.

2. Select Manual Configuration.

3. Select the Server Location you want to connect to and then click Download.

4. In the Select Protocol dropdown choose WireGuard.

5. In the Select Device dropdown choose DD-WRT. Then click Generate Configuration. This will save a .conf file to your computer.

GL.iNet Router Setup for PureVPN
Login to GL.iNet firmware settings in a browser on any computer or smart device connected to the GL.iNet FlashRouter’s network. For more instructions on how to access the firmware settings view our guide here.
1. Navigate to the VPN tab and select WireGuard Client.

2. Click New Group.

3. Enter PureVPN and click the check mark.

4. Select the .conf file you downloaded earlier and upload it here.

5. Click Apply.
6. Select VPN Dashboard.

7. Set the Enable toggle to On to begin the PureVPN connection.

Verify a successful PureVPN connection
- You should now see information appear in the Server Address, Server Listen Port, Traffic Statistics, and Client Virtual IP areas.
- Visit PureVPN’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to PureVPN.
How to change the PureVPN server
Replicate the steps above with a new location.
ExpressVPN TP-Link OpenVPN Setup
Preparing for ExpressVPN TP-Link Setup
Obtain your ExpressVPN OpenVPN Information
If you are not already an ExpressVPN user Sign Up Now.
1. Log in to your account on the ExpressVPN website.

2. Successfully log in with your account information. Select More.

3. Select Manual Configuration and copy the Username and Password that are displayed on the right hand side of the screen.


4. Click the Server Location that you want to connect to. This will download a .ovpn file to your computer that we will use later on. There is no need to open the file. For this example I have selected New York but feel free to select any server listed there.

TP-Link Router Setup for ExpressVPN
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this OpenVPN Client profile. We typically advise entering in the location or server number here. Our example server was in New York so I have entered in ExpressVPN New York.
Set the VPN Type to OpenVPN.
In the Username and Password fields paste in the ExpressVPN username and password we obtained earlier.
Click Browse and select the .ovpn file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful ExpressVPN connection
- You should now see a CONNECTED message.
- Visit ExpressVPN’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to ExpressVPN.
How to change the ExpressVPN server
- Follow the steps at the top of the page to obtain a new .ovpn file.
- Then proceed with the settings same as initial setup.
Internet and Wifi Setup on Asus Merlin Firmware
Listed below are important links to setup instructions for connecting an Asus Merlin firmware router to the internet and WiFi.
How do I upgrade the Asus Merlin firmware of my FlashRouter?
Download the latest AsusWRT Merlin firmware build for your specific FlashRouter model at the Asus Merlin download website. Contact support@flashrouters.com if you are uncertain about your router model or your router model is not available. Click your router model and then select the Release folder.
Make sure you are following the directions below to load the firmware file into the router settings and not trying to open the firmware file on its own.
Access the FlashRouter via wired connection. It is possible to upgrade firmware via WiFi, but this is not recommended unless you are unable to wire directly to the router.
Navigate to Administration > Firmware Upgrade

NordVPN TP-Link OpenVPN Setup
Preparing for NordVPN TP-Link Setup
Obtain your NordVPN manual Username and Password
If you are not already an NordVPN user Sign Up Now.
1. Log in to your account on the NordVPN website.

2. Click NordVPN on the left hand side and then click Setup NordVPN manually.

3. Enter in the verification code that was sent to your email.

4. Copy and paste your NordVPN manual username and password to a secure location. This is the username and password you will enter into the router settings to connect to NordVPN.

Download your NordVPN .ovpn file
1. There are two options for obtaining the .ovpn file. The first and recommended is to navigate to NordVPN’s server recommendation page. Click Recommended Server to display the fastest server based on your actual location. You can adjust the country if you don’t want to connect to the recommended country.
Then click Show Available Protocols. Click Download Config next to OpenVPN UDP. This will download the .ovpn file to your computer for this server. Do not open this file.

The second method to obtain a server is for connecting to a specific server number that you know you want to use. This applies to NordVPN Dedicated IP servers if you are signed up for that service. Go to NordVPN’s .ovpn file page. Then search for the server number that you want to use and click Download UDP.

TP-Link Router Setup for NordVPN
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this OpenVPN Client profile. We typically advise entering in the location or server number here. Our example server was us6821 so I have entered in NordVPN us6821.
Set the VPN Type to OpenVPN.
In the Username and Password fields paste in the NordVPN username and password we obtained earlier.
Click Browse and select the .ovpn file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful NordVPN connection
- You should now see a CONNECTED message.
- Visit NordVPN’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to NordVPN.
How to change the NordVPN server
- Follow the steps at the top of the page to obtain a new .ovpn file.
- Then proceed with the settings same as initial setup.
How do I change the DHCP range of my FlashRouter?
Whenever a device joins the FlashRouter network via wired or WiFi connection the DHCP server on the router gives out a local IP address to each device so all these devices can interact on your local network.
Increase the DHCP range to allow more users to automatically be assigned an IP address or decrease the DHCP range to limit the users that are automatically assigned an IP address.
Navigate to Setup > Basic Setup

- Under Network Address Server Settings (DHCP) change the Maximum DHCP Users to your preferred value.
- You can edit the Start IP Address to 2 and Maximum DHCP Users to 254 for the most available slots.
- Click Apply Settings.
Why is my Time Zone set to Europe/Berlin?
Europe/Berlin is the default Time Zone setting for DD-WRT firmware.
To change this to your location’s actual Time Zone do the following.
Navigate to Setup > Basic Setup
Select your actual Time Zone from the dropdown field. Leave the Server IP/Name field blank.

CLICK APPLY SETTINGS
The network may reboot for a moment. Simply reconnect when it is back up.
Disabling the NTP Client setting will result in the VPN connection not working so we ask that you please leave it enabled at all times.
Separate 2.4GHz and 5GHz Wi-Fi bands on ExpressVPN/Aircove firmware
By default ExpressVPN firmware bonds the 2.4GHz and 5GHz wireless networks to a single wireless network name. Your device will automatically choose which one will provide the best connection. You can separate these networks to have unique Wi-Fi names so you can control which network your devices will use.
1. Connect to the FlashRouter’s network via ethernet cable or wireless.
2. Open your web browser and enter expressvpnrouter.com or 192.168.132.1 in the URL.


3. Login with your ExpressVPN FlashRouter admin password.

4. Select Network Settings on the left hand side of the menu.

5. Select Wi-Fi Settings on the left hand side of the menu.

6. Click the toggle for Separate 2.4GHz and 5GHz Wi-Fi.

7. Separate Wi-Fi details for the 5GHz band will now display. You can change the name and password if you so choose or leave it with the default name and password with “-5GHz” added to the name. Click Save. Click Continue.

How do I upgrade the DD-WRT firmware of my FlashRouter?
The following DD-WRT builds are from 11/24/2024 r58699. Keep in mind that these builds are for upgrading routers that already have DD-WRT firmware flashed. To flash a stock firmware router with DD-WRT firmware see our Flash My Router plan!
Download an updated DD-WRT firmware build for your specific FlashRouter model below. Contact support@flashrouters.com if you are uncertain about your router model or your router model is not available below.
- Asus RT-AC5300
- Asus RT-AC56U
- Asus RT-AC66U
- Asus RT-AC68U
- Asus RT-AC87U
- Linksys WRT1200AC
- Linksys WRT1900AC
- Linksys WRT1900ACv2
- Linksys WRT1900ACS
- Linksys WRT1900ACSv2
- Linksys WRT3200ACM
- Linksys WRT32X
- Netgear R6300v2
- Netgear R6400
- Netgear R6400v2
- Netgear R6700
- Netgear R6700v2
- Netgear R6700v3
- Netgear R7000
- Netgear R7000P
- Netgear R7450
- Netgear R7800
- Netgear R8000
- Netgear R8500
- Netgear R9000
Please be aware that FlashRouters is not responsible for any DIY firmware flashing updates. If you have questions or concerns contact FlashRouters Support or check out the DD-WRT Community for additional helpful resources.
Make sure you are following the directions below to load the firmware file into the router settings and not trying to open the firmware file on its own.
Access the FlashRouter via wired connection. It is possible to upgrade firmware via WiFi, but this is not recommended unless you are unable to wire directly to the router.
Navigate to Administration > Firmware Upgrade

- Do NOT select Reset to Default Settings in the dropdown menu as this will erase all of your FlashRouter settings.
NOTE: If you are updating from an older DD-WRT build you may be required to reset the router after a firmware update for new features and UI to properly load. You will then be required to setup the administration username and password along with your WiFi and VPN network settings. - Click Choose File and select the file you have downloaded.
- Click Upgrade.
PrivateInternetAccess (PIA) TP-Link OpenVPN Setup
Preparing for PIA TP-Link Setup
Download your PIA .ovpn file
If you are not already a PIA user Sign Up Now.
1. Log in to your account on the PIA website.

2. Successfully log in with your account information then go to PIA’s OpenVPN Config Generator.
3. On the OpenVPN Configuration Generator select the following:
OpenVPN Version: OpenVPN 2.4 or newer
Select Platform: Linux
Select Region: Choose the server location you’d like to connect to
Select Port: Typically we recommend UDP/1198 RSA-2048 AES-128-CBC SHA1 for best speeds but feel free to select the one you want to use.
4. Click Generate to download the .ovpn file. Do not open this file once it is downloaded.

TP-Link Router Setup for PIA
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this OpenVPN Client profile. We typically advise entering in the location. Our example server was New York so I have entered in PIA New York.
Set the VPN Type to OpenVPN.
In the Username and Password fields paste in the PIA username and password you use to successfully login to your PIA website account.
Click Browse and select the .ovpn file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful PIA connection
- You should now see a CONNECTED message.
- Visit PIA’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to PIA.
How to change the PIA server
- Follow the steps at the top of the page to obtain a new .ovpn file.
- Then proceed with the settings same as initial setup.
Privacy Hero Adblocking Malware and Phishing Prevention Setup
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
Use these steps to enable Privacy Hero’s adblocking, malware, and phishing prevention settings to add extra security to your network.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the VPN symbol.

4. Toggle the Adblocking and Malware & Phishing switches to On.

IPVanish TP-Link OpenVPN Setup
Preparing for IPVanish TP-Link Setup
Download your IPVanish .ovpn file
If you are not already an IPVanish user Sign Up Now.
1. Log in to your account on the IPVanish website.

2. Successfully log in with your account information then go to IPVanish .ovpn file page.
3. Click on the .ovpn file for the server location you want to use to dowloand the .ovpn file. Do not open this file.

TP-Link Router Setup for IPVanish
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this OpenVPN Client profile. We typically advise entering in the location. Our example server was New York so I have entered in IPVanish New York.
Set the VPN Type to OpenVPN.
In the Username and Password fields paste in the IPVanish email and password you use to successfully login to your IPVanish website account.
Click Browse and select the .ovpn file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful IPVanish connection
- You should now see a CONNECTED message.
- Visit IPVanish’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to IPVanish.
How to change the IPVanish server
- Follow the steps at the top of the page to obtain a new .ovpn file.
- Then proceed with the settings same as initial setup.
Privacy Hero VPN Kill Switch Setup
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
Use these steps to enable Privacy Hero’s VPN Kill Switch to make sure that no traffic goes through your router unless it is connected to VPN.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the VPN symbol.

4. Toggle the VPN Kill Switch setting to On.

Change server locations on ExpressVPN/Aircove firmware
You can change the ExpressVPN server location at any time so your Internet connection appears as originating from that location.
1. Connect to the FlashRouter’s network via ethernet cable or wireless.
2. Open your web browser and enter expressvpnrouter.com or 192.168.132.1 in the URL.


3. Login with your ExpressVPN FlashRouter admin password.

4. Click the three dots next to the server location.

5. Type in the location you want to connect to. Click the new location to connect.

6. You are now connected to the new server location.

ExpressVPN offers servers in locations all over the world. Typically for speeds it is best to connect to the server closest to your actual location. Clicking a country instead of a city will connect you to the ideal city in that country.
Privacy Hero Creating User Profiles and Adding Devices to Profiles
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
The Privacy Hero router allows for User Profile creation. Doing so allows you to group different user’s devices together to customize the following rules:
- Internet access scheduler (Bedtime settings)
- Internet Safe Search
- Youtube Safe Search
- Block Adult Content
This makes the Privacy Hero a great router option for families and internet addicts.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the Profiles symbol.

4. Click Create New Profile.

5. Set the Profile Name, select the Profile Icon, and click Save.

6. Click the name of the User Profile.

7. Select Devices.

8. Select Manage Devices.

9. If you have not already connected your devices to the Privacy Hero network via wireless or ethernet you can do so now. Refresh the page after connecting a new device and it will appear in the list where you can select Move to “Profile Name” to move the device to the appropriate profile. By default new devices are in the Shared profile.

If your devices were already connected to the Privacy Hero network and you are having issues identifying them I would recommend the following steps:
- Click the Devices icon.
- Select the device in question.
- Click Nerd and note down the IP Address of the device.
- Go to the network settings of your device where it will display the local IP Address and match that to the IP Address noted in Privacy Hero.
This is how you can identify a device that is not properly named.
10. Now that your devices are assigned you can set the Bedtime Settings (Internet Scheduler) and Safe Surf settings for your new Profile.
Surfshark TP-Link OpenVPN Setup
Preparing for Surfshark TP-Link Setup
Download your Surfshark .ovpn file
If you are not already a Surfshark user Sign Up Now.
1. Log in to your account on the Surfshark website.

2. Click VPN Manual Setup.

3. Select Router as the Setup method.

4. Select OpenVPN as the Protocol.

5. Copy and paste your Surfshark manual username and password to a secure location. This is the username and password you will enter into the router settings to connect to Surfshark.

6. Click Location and select the server location you want to connect to. Unless you need a specific location we recommend using Surfshark’s recommended Fastest server. Click Download to download the UDP .ovpn file for this Surfshark server location.

TP-Link Router Setup for Surfshark
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this OpenVPN Client profile. We typically advise entering in the location. Our example server was New York so I have entered in Surfshark New York.
Set the VPN Type to OpenVPN.
In the Username and Password fields paste in the Surfshark username and password we obtained earlier.
Click Browse and select the .ovpn file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful Surfshark connection
- You should now see a CONNECTED message.
- Visit Surfshark’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to Surfshark.
How to change the Surfshark server
- Follow the steps at the top of the page to obtain a new .ovpn file.
- Then proceed with the settings same as initial setup.
Privacy Hero Bedtime Settings (Internet Scheduler)
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
The Bedtime settings feature allows users to schedule when internet access will be turned off for specific user profiles. All devices assigned to this profile will have these rules applied.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the Profiles symbol.

4. Click the name of the User Profile.

5. Click Schoolnights or Weekends depending on which you need to set rules for.

6. Select the time that you want the Internet to turn off and the days you want this rule to apply to. Click Save.

7. Set the Bedtime toggle to On.

ProtonVPN TP-Link WireGuard Setup
Preparing for ProtonVPN TP-Link Setup
Download your ProtonVPN .conf file
If you are not already an ProtonVPN user Sign Up Now.
1. Log in to your account on the ProtonVPN website.

2. Click Downloads.

3. Scroll down to WireGuard configuration and name the device FlashRouter.

4. Select Router as the platform.

5. Select the VPN options that best fit your needs. We typically use the settings as seen in the screenshot here if you are unsure.

6. Next select the server that you would like to connect to and click Create. At the top of the page you’ll see ProtonVPN’s recommended server which we recommend using unless you need to connect to a specific location.
If you need a specific server location find it in the list and click Create.


7. After clicking Create a new window will appear. Click Download to download the .conf file to your computer.
TP-Link Router Setup for ProtonVPN
Login to TP-Link firmware settings in a browser on any computer or smart device connected to the FlashRouter’s network.
1. Navigate to the Advanced tab.

2. Navigate to the VPN Client tab.

3. Check the Enable box next to VPN Client. Then click Save at the bottom of the page.

4. Click the Add button in the Server List area.

5. In the Description field enter in the name you’d like to use for this WireGuard Client profile. We typically advise entering in the location. Our example server was New York so I have entered in ProtonVPN New York.
Set the VPN Type to WireGuard.
Click Browse and select the .conf file you downloaded earlier. Then click Save.

By default no devices will be assigned to the VPN Tunnel. With TP-Link firmware you must manually assign the devices that you want connected to the VPN tunnel. Proceed with the next steps to do so for all devices you want connected to VPN.
6. Click the Add button in the Device List area.

7. A list of devices connected to the FlashRouter’s network will appear. Check the devices that you want to connect to VPN. Then click OK.

8. Now that the devices have been assigned to the VPN connection click the Enable toggle in the Server List area.

Verify a successful ProtonVPN connection
- You should now see a CONNECTED message.
- Visit ProtonVPN’s IP Check to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to ProtonVPN.
How to change the ProtonVPN server
- Follow the steps at the top of the page to obtain a new .conf file.
- Then proceed with the settings same as initial setup.
Privacy Hero Safe Surf
Your Privacy Hero router uses Cloud Based router management which means you can access the router settings from anywhere on any device that has an internet connection. You can follow these steps while connected to your phone, other Wi-Fi network, or the Privacy Hero network.
The Safe Surf settings feature allows users to block inappropriate search results, YouTube videos, and adult content. All devices assigned to this profile will have these rules applied.
1. From any device that has a browser such as a computer, smartphone, or tablet visit app.privacyhero.com

2. Enter your Privacy Hero account email and password. Click Login.

If you have not created your Privacy Hero account yet please follow these instructions.
3. Click the Profiles symbol.

4. Click the name of the User Profile.

5. Toggle On the settings for Internet Safe Search, YouTube Safe Search, and Block Adult Content as needed.

Hotspot Shield Manual OpenVPN Setup
Preparing for Manual Hotspot Shield Setup
Obtain your Hotspot Shield OpenVPN Information
If you are not already a Hotspot Shield user Sign Up Now.
1. Log in to your account on the Hotspot Shield website.

2. Click Hotspot Shield on the left side navigation.

3. Under Choose your device click Router.

4. In the Set up your router section Select your desired virtual location and then click Download file.
Open the file that was downloaded with NotePad++ for Windows or TextEdit for Apple. You only need the <cert> and <key> from the .ovpn file. All Hotspot Shield servers have different keys and certificates.

5. Copy the VPN Username, and Password that appear under Step 2 to a notepad, you will need this information later in the setup process.

DD-WRT Router Setup for Hotspot Shield
Navigate to Services > VPN
Enter Hotspot Shield settings
OpenVPN Client
Start OpenVPN Client
If you wish to disable your VPN connection simply set this to Disable at any time and click Apply Settings.
Server IP/Name
At the top of the .ovpn file you downloaded above, there is a line e.g.:
remote universitycalendar.us 8041
universitycalendar.us is your Hotspot Shield server name. Enter the server name in this field.
Port
8041
Tunnel Device
TUN
Tunnel Protocol
UDP
Encryption cipher
AES-128-CBC
Hash Algorithm
SHA256
User Pass Authentication
Enable
Username
Enter the Username you obtained in your Hotspot Shield account.
Password
Enter the Password you obtained in your Hotspot Shield account.
Advanced Options
Enable
TLS Cipher
None
LZO Compression
No
NAT
Enable
Firewall Protection
Enable
Additional Config
resolv-retry infinite
remote-random
nobind
tun-mtu 1500
tun-mtu-extra 32
mssfix 1450
persist-key
persist-tun
ping 15
ping-restart 0
reneg-sec 0
remote-cert-tls server
Policy Based Routing
This field can be used for split VPN and Dual Gateway routing.
CA Cert
—–BEGIN CERTIFICATE—–
MIIFazCCA1OgAwIBAgIRAIIQz7DSQONZRGPgu2OCiwAwDQYJKoZIhvcNAQELBQAw
TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh
cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMTUwNjA0MTEwNDM4
WhcNMzUwNjA0MTEwNDM4WjBPMQswCQYDVQQGEwJVUzEpMCcGA1UEChMgSW50ZXJu
ZXQgU2VjdXJpdHkgUmVzZWFyY2ggR3JvdXAxFTATBgNVBAMTDElTUkcgUm9vdCBY
MTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAK3oJHP0FDfzm54rVygc
h77ct984kIxuPOZXoHj3dcKi/vVqbvYATyjb3miGbESTtrFj/RQSa78f0uoxmyF+
0TM8ukj13Xnfs7j/EvEhmkvBioZxaUpmZmyPfjxwv60pIgbz5MDmgK7iS4+3mX6U
A5/TR5d8mUgjU+g4rk8Kb4Mu0UlXjIB0ttov0DiNewNwIRt18jA8+o+u3dpjq+sW
T8KOEUt+zwvo/7V3LvSye0rgTBIlDHCNAymg4VMk7BPZ7hm/ELNKjD+Jo2FR3qyH
B5T0Y3HsLuJvW5iB4YlcNHlsdu87kGJ55tukmi8mxdAQ4Q7e2RCOFvu396j3x+UC
B5iPNgiV5+I3lg02dZ77DnKxHZu8A/lJBdiB3QW0KtZB6awBdpUKD9jf1b0SHzUv
KBds0pjBqAlkd25HN7rOrFleaJ1/ctaJxQZBKT5ZPt0m9STJEadao0xAH0ahmbWn
OlFuhjuefXKnEgV4We0+UXgVCwOPjdAvBbI+e0ocS3MFEvzG6uBQE3xDk3SzynTn
jh8BCNAw1FtxNrQHusEwMFxIt4I7mKZ9YIqioymCzLq9gwQbooMDQaHWBfEbwrbw
qHyGO0aoSCqI3Haadr8faqU9GY/rOPNk3sgrDQoo//fb4hVC1CLQJ13hef4Y53CI
rU7m2Ys6xt0nUW7/vGT1M0NPAgMBAAGjQjBAMA4GA1UdDwEB/wQEAwIBBjAPBgNV
HRMBAf8EBTADAQH/MB0GA1UdDgQWBBR5tFnme7bl5AFzgAiIyBpY9umbbjANBgkq
hkiG9w0BAQsFAAOCAgEAVR9YqbyyqFDQDLHYGmkgJykIrGF1XIpu+ILlaS/V9lZL
ubhzEFnTIZd+50xx+7LSYK05qAvqFyFWhfFQDlnrzuBZ6brJFe+GnY+EgPbk6ZGQ
3BebYhtF8GaV0nxvwuo77x/Py9auJ/GpsMiu/X1+mvoiBOv/2X/qkSsisRcOj/KK
NFtY2PwByVS5uCbMiogziUwthDyC3+6WVwW6LLv3xLfHTjuCvjHIInNzktHCgKQ5
ORAzI4JMPJ+GslWYHb4phowim57iaztXOoJwTdwJx4nLCgdNbOhdjsnvzqvHu7Ur
TkXWStAmzOVyyghqpZXjFaH3pO3JLF+l+/+sKAIuvtd7u+Nxe5AW0wdeRlN8NwdC
jNPElpzVmbUq4JUagEiuTDkHzsxHpFKVK7q4+63SM1N95R1NbdWhscdCb+ZAJzVc
oyi3B43njTOQ5yOf+1CceWxG1bQVs5ZufpsMljq4Ui0/1lvh+wjChP4kqKOJ2qxq
4RgqsahDYVvTH9w7jXbyLeiNdd8XM2w9U/t7y0Ff/9yi0GE44Za4rF2LN9d11TPA
mRGunUHBcnWEvgJBQl9nJEiU0Zsnvgc/ubhPgXRR4Xq37Z0j4r7g1SgEEzwxA57d
emyPxgcYxn/eR44/KJ4EBs+lVDR3veyJm+kXQ99b21/+jh5Xos1AnX5iItreGCc=
—–END CERTIFICATE—–
—–BEGIN CERTIFICATE—–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—–END CERTIFICATE—–
Public Client Cert
In the .ovpn file Copy and Paste all contents in between the <cert> and </cert> lines from your .ovpn file starting and ending with:
—–BEGIN CERTIFICATE—–
…
—–END CERTIFICATE—–
Private Client Key
In the .ovpn file Copy and Paste all contents in between the <key> and </key> lines from your .ovpn file starting and ending with:
—–BEGIN PRIVATE KEY—–
…
—–END PRIVATE KEY—–
CLICK APPLY SETTINGS
Leave all settings not mentioned above as their default setting.
Verify a successful Hotspot Shield connection
Navigate to Status > OpenVPN
- You should now see a CONNECTED SUCCESS message.
- Visit Hotspot Shield’s website to verify your new IP address and virtual location.
In some cases you may notice that the location is not showing the same location as the server you have input in your router settings; this is because geo tracking tools are often tricked by VPN connections. As long as you see an IP address that is not the same as your normal Internet IP address then you are indeed connected to Hotspot Shield.
Back up your settings
Navigate to Administration > Backup
- Click the Backup button.
- A file named nvrambak.bin will be saved to your computer.
- You can load nvrambak.bin to restore your settings in the event of a reset.
How to change the Hotspot Shield server
- Follow the instructions for obtaining the OpenVPN information from above.
- Enter the new Server Address in the Server IP/Name field.
- Enter the new Username and Password.
- Enter the new Public Client Cert and Private Client Key.
- Click Apply Settings.