My first go with Flint-Beryl Wireguard. Any tips?
This will be my first international trip using the Flint 2/Beryl AX VPN via Wireguard to hide my location. Did not see any issues testing with my phone's hotspot and in another city. Main concern is my work laptop cannot have location services turned off. It is also managed by Microsoft Intune.
Would appreciate any tips, comments, anything I might have overlooked. I'll be gone 2 months, wish me luck.
My setup:
Work laptop -> Beryl (ethernet only) -> Wireguard VPN -> Flint 2 -> ISP
- Server router - Flint 2
- DDNS, UDP port forwarding to ISP router
- Travel router - Beryl AX
- Killswitch ON
- DNS requests go through VPN (Cloudfare)
- IPv6 disabled
- Work laptop
- Managed by Microsoft Intune with Company Portal
- Uses Global Protect VPN
- Location Services ON (cannot disable)
- Will this be a problem if I mask my network location?
- WIFI/Bluetooth disabled in Device Mgr
- No GPS found in BIOS/Device Mgr
- Timezone set to manual
- Logged out of all personal accts in browser, cleared cache, browsing data
- Work Phone
- Separate BYOD work phone only connected to Beryl WIFI
- Only used for MS Outlook, Teams (location disabled)
- MS Authenticator (offline codes only)
- If connected to Beryl WIFI and auth-ing with push notification instead of using offline codes, would I risk leaking sign-in location?
- No personal use
- Backup in case Beryl fails
- Personal laptop with separate Wireguard profile installed
- No backup for Flint. Installed at home with family.
- Should I have WireGuard installed on my phone or is personal laptop enough?
My first go with Flint-Beryl Wireguard. Any tips?
This will be my first international trip using the Flint 2/Beryl AX VPN via Wireguard to hide my location. Did not see any issues testing with my phone's hotspot and in another city. Main concern is my work laptop cannot have location services turned off. It is also managed by Microsoft Intune.
Would appreciate any tips, comments, anything I might have overlooked. I'll be gone 2 months, wish me luck.
My setup:
Work laptop -> Beryl (ethernet only) -> Wireguard VPN -> Flint 2 -> ISP
- Server router - Flint 2
- DDNS, UDP port forwarding to ISP router
- Travel router - Beryl AX
- Killswitch ON
- DNS requests go through VPN (Cloudfare)
- IPv6 disabled
- Work laptop
- Managed by Microsoft Intune with Company Portal
- Uses Global Protect VPN
- Location Services ON (cannot disable)
- Will this be a problem?
- WIFI/Bluetooth disabled in Device Mgr
- No GPS found in BIOS/Device Mgr
- Timezone set to manual
- Logged out of all personal accts in browser, cleared cache, browsing data
- Work Phone
- Separate BYOD work phone only connected to Beryl WIFI
- Only used for MS Outlook, Teams (location disabled)
- MS Authenticator (offline codes only)
- If connected to Beryl WIFI and auth-ing with push notification instead of using offline codes, would I risk leaking sign-in location?
- No personal use
- Backup in case Beryl fails
- Personal laptop with separate Wireguard profile installed
- No backup for Flint. Installed at home with family.
- Should I have WireGuard installed on my phone or is personal laptop enough?