Presumably you have now created the following Selective Routing GUI tables?
e.g. For
ExpressVPN (
VPN Client 1)
Code:
Express1 192.168.1.111 0.0.0.0 VPN
Express2 192.168.1.123 0.0.0.0 VPN
e.g. For
PIA (
VPN Client 2) -
Everything else
Code:
ALL_LAN_PIA 192.168.1.0/24 0.0.0.0 VPN
Router 192.168.1.1 0.0.0.0 WAN
NOTE: You don't have to use the GUI to statically define the Selective Routing of the devices, you can always exploit the
openvpn-event triggers to rebuild the
RPDB table to enforce your requirements.
Optionally, you may wish to enable the
KILL switch for
VPN Client 1, then that should ensure that
ExpressVPN devices
.111/.123 do not leak via
VPN Client 2 or the
WAN