Ignore "network routes" on specific networks #358

Closed
opened 2025-11-20 05:10:06 -05:00 by saavagebueno · 9 comments
Owner

Originally created by @sevrage on GitHub (Jun 5, 2023).

Originally assigned to: @mlsmaycon on GitHub.

Hello,

My on-premises router has access (lan2lan vpn) to specific client networks
1-When I'm working remotely I can access those specific client networks by using "network routes" configurations.
2-When I'm working on-premises I don't need the "network routes" configuration because the computers on the local networks are routed through the router that knows those client networks, but because netbird has the "network routes" configuration the routing is made by netbird.

Is it possible to make some sort of bypass when I'm on-premises?
Like ignoring the specific client network routes if netbird is on a specific LAN

I also have the on-premises LAN in the "network routes", maybe associate the specific client networks to this network so netbird knows that when it's on that LAN it does not need to route those child routes.

network examples:
on-premises LAN - 192.168.100.x
client network - 10.60.0.x
router 192.168.100.1 lan2lan vpn configurations to the client networks

Thanks

Originally created by @sevrage on GitHub (Jun 5, 2023). Originally assigned to: @mlsmaycon on GitHub. Hello, My on-premises router has access (lan2lan vpn) to specific client networks 1-When I'm working remotely I can access those specific client networks by using "network routes" configurations. 2-When I'm working on-premises I don't need the "network routes" configuration because the computers on the local networks are routed through the router that knows those client networks, but because netbird has the "network routes" configuration the routing is made by netbird. Is it possible to make some sort of bypass when I'm on-premises? Like ignoring the specific client network routes if netbird is on a specific LAN I also have the on-premises LAN in the "network routes", maybe associate the specific client networks to this network so netbird knows that when it's on that LAN it does not need to route those child routes. network examples: on-premises LAN - 192.168.100.x client network - 10.60.0.x router 192.168.100.1 lan2lan vpn configurations to the client networks Thanks
saavagebueno added the enhancementclientmanagement-servicewaiting-feedback labels 2025-11-20 05:10:06 -05:00
Author
Owner

@fbzhong commented on GitHub (Jun 28, 2023):

Yes, I need this features too!

One of a possible solution could be let user config a script before applying network routes, if the script returns other than 0, the network route item would be skipped.

@fbzhong commented on GitHub (Jun 28, 2023): Yes, I need this features too! One of a possible solution could be let user config a script before applying network routes, if the script returns other than 0, the network route item would be skipped.
Author
Owner

@fbzhong commented on GitHub (Jun 28, 2023):

Or, if my device could directly access any of routine peers, which mean they are in the same lan network, skip that route item.

@fbzhong commented on GitHub (Jun 28, 2023): Or, if my device could directly access any of routine peers, which mean they are in the same lan network, skip that route item.
Author
Owner

@fbzhong commented on GitHub (Jul 13, 2023):

@mlsmaycon any thoughts about this new feature request? Maybe we could write some code on that.

@fbzhong commented on GitHub (Jul 13, 2023): @mlsmaycon any thoughts about this new feature request? Maybe we could write some code on that.
Author
Owner

@krishne35 commented on GitHub (Jun 19, 2024):

Any update on this?

@krishne35 commented on GitHub (Jun 19, 2024): Any update on this?
Author
Owner

@fbzhong commented on GitHub (Jun 20, 2024):

The "Network Routes" feature in client could solve this issue perfectly.
CleanShot 2024-06-20 at 13 55 23@2x

@fbzhong commented on GitHub (Jun 20, 2024): The "Network Routes" feature in client could solve this issue perfectly. ![CleanShot 2024-06-20 at 13 55 23@2x](https://github.com/netbirdio/netbird/assets/479845/7f5097f6-2b4d-436f-bd62-eb4f30cfb765)
Author
Owner

@krishne35 commented on GitHub (Jun 20, 2024):

I'm on android don't think such feature exist for android yet
Also in tailscale there is a simple toggle "allow lan" which bypasses any routes and connect to peer directly

@krishne35 commented on GitHub (Jun 20, 2024): I'm on android don't think such feature exist for android yet Also in tailscale there is a simple toggle "allow lan" which bypasses any routes and connect to peer directly
Author
Owner

@carsten-re commented on GitHub (Jan 2, 2025):

I‘ve tried this guide: https://docs.netbird.io/how-to/disabling-network-route-when-connecting-from-the-office but I had no luck to get it up and running for all Network situations.
Even I‘m not certain whether if I fully understood the guide. In my point of view, the policy needs to have a kind of location awareness option.

Used version: Netbird 0.35.2, iOS 0.34

@carsten-re commented on GitHub (Jan 2, 2025): I‘ve tried this guide: https://docs.netbird.io/how-to/disabling-network-route-when-connecting-from-the-office but I had no luck to get it up and running for all Network situations. Even I‘m not certain whether if I fully understood the guide. In my point of view, the policy needs to have a kind of location awareness option. Used version: Netbird 0.35.2, iOS 0.34
Author
Owner

@nazarewk commented on GitHub (Apr 28, 2025):

Hello @sevrage,

We're currently reviewing our open issues and would like to verify if this problem still exists in the latest NetBird version.

Could you please confirm if the issue is still there?

We may close this issue temporarily if we don't hear back from you within 2 weeks, but feel free to reopen it with updated information.

Thanks for your contribution to improving the project!

@nazarewk commented on GitHub (Apr 28, 2025): Hello @sevrage, We're currently reviewing our open issues and would like to verify if this problem still exists in the [latest NetBird version](https://github.com/netbirdio/netbird/releases). Could you please confirm if the issue is still there? We may close this issue temporarily if we don't hear back from you within **2 weeks**, but feel free to reopen it with updated information. Thanks for your contribution to improving the project!
Author
Owner

@mlsmaycon commented on GitHub (Jun 1, 2025):

closing issue due to no recent feedback. Feel free to open a new one if the issue persist or reopen if this was a feature request.

@mlsmaycon commented on GitHub (Jun 1, 2025): closing issue due to no recent feedback. Feel free to open a new one if the issue persist or reopen if this was a feature request.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: SVI/netbird#358