The Fortify router integrates with ExpressVPN, allowing you to set up a VPN connection that uses ExpressVPN’s high-speed servers and strong encryption. The steps below will show you how to set up a VPN tunnel and configure rules for your devices and connections.

Note: The Fortify (GL-MT6000) router comes with 12 months of the ExpressVPN Advanced plan for new and returning users. It can also be used with an existing ExpressVPN subscription. If you have not redeemed or connected your subscription yet, refer to our initial setup guide.

Jump to…

Open the ExpressVPN dashboard
Add and configure a VPN tunnel
Select client sources
Select target destinations
Activate a VPN tunnel
Deactivate a VPN tunnel
Add additional VPN tunnels
Configure VPN tunnel priority
Rename a tunnel
Delete a tunnel


Open the ExpressVPN dashboard

  1. In your browser, go to 192.168.8.1 to access the router admin panel.
  2. Log in with your admin credentials.
  3. Go to VPN > VPN Client Profile.GL.iNet Fortify admin panel, showing highlighted "VPN" and "VPN Client Profile" tabs.
  4. Log into or activate your ExpressVPN account if you have yet to do so.
  5. Once you have signed into your ExpressVPN account, you’ll see a tab that displays information about your license. Click Go to ExpressVPN Dashboard to start setting up the VPN, and follow the instructions below.GL.iNet Fortify VPN Client Profile window, showing a highlighted "Go to ExpressVPN Dashboard" button.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Add and configure a VPN tunnel

Note: The ExpressVPN integration with the Fortify (GL-MT6000) router uses the WireGuard protocol.

In the ExpressVPN Dashboard window, click Add VPN Tunnel.ExpressVPN dashboard on the GL.iNet Fortify router, showing a highlighted "Add VPN Tunnel" button.

A list of VPN server locations, called profiles, will open. Click the profiles you want to use. You can also use the search bar to manually look for a specific server location.GL.iNet Fortify page for adding a new VPN tunnel, showing highlighted server profiles and a search bar.

When you select a server location, it will show up on the Selected Profile list on the right.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "Selected Profile" list.

If you select multiple server locations, the VPN will attempt to connect to each one using the order they appear in on the Selected Profile list. If it cannot connect to one location, it tries the next one on the list until it successfully establishes a connection.

Note:If all location profiles fail to connect, the system will determine whether to switch to the router’s local network based on the kill switch settings.

To change the profile priority, click and hold ☰ next to a specific location in the Selected Profile list to change its order.GL.iNet Fortify page for adding a new VPN tunnel, showing highlighted hamburger icons next to selected profiles.

To remove a location from the Selected Profile list, click the trashcan icon next to it.GL.iNet Fortify page for adding a new VPN tunnel, showing highlighted trashcan icons next to selected profiles.

When done, click Next.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "Next" button.

Select client sources

Choose which devices or types of connections on your router should use this VPN tunnel. Later, you can create additional VPN tunnels for different groups of devices or connections.

You can choose from four options:

All internet traffic from every device connected to your Fortify router goes through the VPN tunnel. This means that every device on your network that accesses the internet will use this VPN connection when this tunnel is active.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "All Clients" tab.

The VPN tunnel is only used for internet traffic from specific network interfaces, like your local network, guest Wi-Fi, or connected device networks.To select a network interface, click the desired connection type.GL.iNet Fortify page for adding a new VPN tunnel. The "Specified Connection Types" tab and available network interfaces are highlighted.

Only internet traffic from the devices you select here goes through this VPN tunnel. Devices you leave unselected will bypass this VPN connection.To select a device, click from the available options displayed under Add Device.GL.iNet Fortify page for adding a new VPN tunnel. The "Specified Devices" tab and available devices are highlighted.

Note: Only devices you have previously connected to the Fortify router’s network will show up under Add Device.

All internet traffic goes through this VPN tunnel, except for the selected devices. For example, you may choose to exclude your gaming console from a certain VPN tunnel so that it uses your local internet connection (or a different tunnel).To exclude a device, click the available options shown under Add Device.GL.iNet Fortify page for adding a new VPN tunnel. The "Exclude Specified Devices" tab and available devices are highlighted.

Note: Only devices connected to the Fortify router’s network will show up under Add Device.

Click the desired rule, select device or connection types if needed, then click Next to continue.GL.iNet Fortify page for adding a new VPN tunnel, showing the client source window. The client source tabs and "Next" button are highlighted.

Select target destinations

Choose which online services use the VPN connection and which use your regular internet connection. Later, you can create additional tunnels for different types of apps and websites.

You can select from three options:

Routes traffic to all targets through the VPN tunnel. This means every online service you access on the device or connection types you previously selected will use this VPN tunnel.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "All Targets" tab.

Only your traffic to the websites or IP addresses you list here will use this VPN tunnel; web traffic to other websites and services bypasses the VPN connection (or follows another tunnel’s rules).

To only secure traffic to specific online destinations, click Manual and enter the domains and IP addresses in the table below.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "Specified Domain / IP List" tab, "Manual" option, and domain and IP table.

The websites or IP addresses you list here will bypass the VPN tunnel (and use your local internet connection or another tunnel’s rules). Traffic to all other online services will be routed through the VPN tunnel.

To exclude specific online destinations from the VPN tunnel, select Manual and enter the desired website and IP addresses in the table below.GL.iNet Fortify page for adding a new VPN tunnel, showing a highlighted "Exclude Specified Domain / IP List" tab, "Manual" option, and domain and IP table.

Click the desired rule, configure website and IP address rules if necessary, and click Apply.GL.iNet Fortify page for adding a new VPN tunnel, showing the target destination window. The target destination tabs and "Apply" button are highlighted.

The VPN tunnel will be created and added to the ExpressVPN Dashboard, where you will be redirected. You can now activate the VPN tunnel or add additional tunnels.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Activate a VPN tunnel

To activate a VPN tunnel:

  1. In the ExpressVPN Dashboard, click the power button on the tunnel you want to activate.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted power button.
  2. If the connection is successful, you will see Connected displayed under the power button.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted "Connected" status.

Now, the devices or connection types you configured earlier will be connected to the VPN server location you selected for this tunnel, following any specific rules you set for target domains or IP addresses.

To make sure the VPN is working, access our IP checker page on a device matching the criteria for this tunnel. You will know the VPN is working properly if the results show an IP address range and country that matches your chosen VPN profile.ExpressVPN IP address checker test results on desktop.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Deactivate a VPN tunnel

To turn off an active VPN tunnel:

  1. In the ExpressVPN Dashboard, click the power button for the VPN tunnel you want to deactivate.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted power button.
  2. To confirm the VPN tunnel is disabled, look for a Not Connected status under the power button.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted "Not Connected" status.

Now, your traffic will be routed through your regular internet connection and not protected by the VPN, unless you have set up and activated any additional tunnels.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Add additional VPN tunnels

You can add extra VPN tunnels to manage different types of devices, networks, or online destinations. For example, you could use one VPN tunnel to protect web browsing traffic from all network devices and a second tunnel that has separate rules for a specific streaming device or games console.

You can also create additional tunnels set to different server locations to easily switch between them. For instance, you could add a tunnel for all connected devices that is set to the U.S. and another tunnel for all connected devices that is set to Argentina. When you want to change locations, you simply enable the desired VPN tunnel and turn off the other one.

To add an additional VPN tunnel, click Add New Tunnel on the ExpressVPN Dashboard. Then, follow the steps above to configure connection profiles and rules.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted "Add New Tunnel" button.

Configure VPN tunnel priority

If you set up multiple VPN tunnels, you can set a priority order. This tells the router which tunnel rules to follow in case multiple tunnels with conflicting rules are enabled at the same time.

When you enable multiple VPN tunnels, your traffic will look for rules following the priority order:

  • Traffic will first be matched against the highest-priority VPN tunnel rule.
  • If traffic doesn’t match that tunnel’s rules, it will check the rules in the next priority tunnel and follow them, and so on.
  • VPN tunnels operate independently, so once traffic matches a tunnel’s rules, it will be routed through that VPN connection and will not switch between tunnel groups.
Note: If you select multiple server locations (profiles) within a VPN tunnel, the VPN will connect to the selected options in the order they appear in. If one server location fails, the VPN tunnel will attempt the next one on the list, and so on. If a VPN tunnel disconnects unexpectedly, the system will determine how to handle traffic based on the kill switch configuration.

To adjust tunnel priority:

  1. Click the gear icon for a tunnel group and select Priority.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted cog icon and "Priority" menu item for a VPN tunnel.
  2. Click and hold ☰ on the right to reorder the VPN tunnels.ExpressVPN dashboard on a GL.iNet Fortify router, showing the VPN tunnel priority window. The three-line icons are highlighted.
  3. When finished, click Apply.ExpressVPN dashboard on a GL.iNet Fortify router, showing the VPN tunnel priority window. The "Apply" button is highlighted.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Rename a tunnel

To rename a VPN tunnel, click the gear icon for the VPN tunnel you want to rename. Then, click Rename, enter the desired name, and save the changes.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted cog icon and "Rename" menu item for a VPN tunnel.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top


Delete a tunnel

To delete a VPN tunnel, click the gear icon for the VPN tunnel you want to remove. Then, click Delete and confirm your choice if prompted.ExpressVPN dashboard on a GL.iNet Fortify router, showing a highlighted cog icon and "Delete" menu item for a VPN tunnel.

Need help? Contact the ExpressVPN Support Team for immediate assistance.

Back to top

Was this article helpful?

We're sorry to hear that. Let us know how we can improve.

A member of our Support Team will follow up on your issue.