Skip to content

How to set up Surfshark VPN clients?

Info
  • Cudy routers provide a dedicated Surfshark VPN client interface. You can configure your Surfshark VPN account directly on the router to establish a secure VPN connection for all devices connected to the network.
  • This feature is available for Cudy routers with firmware version 2.5.0+ and Cudy App version 1.5.5+.
  • TR3000 is shown as an example in this tutorial.

Using Cudy App

  1. Connect your phone to the router's Wi-Fi network.

  2. Open the Cudy App on your phone. Tick I agree with ... and select Local Management.

    Tip

    Scan the QR code to download it first if needed.

  3. Select Wi-Fi Device.

    Tip

    If you have before managed other type of devices on Cudy App, you may need to tap the menu icon (☰) on the left of Dashboard to switch to Wi-Fi Device.

  4. Tap the router.

  5. Enter the router's administrator password. Create one if this is your login for the first time.

  6. Scroll down and tap More.

  7. Find and tap VPN.

  8. Tap VPN Client.

  9. Tap Add.

  10. Tap Surfshark.

  11. Enter your Surfshark account Username and Password, and click Continue.

    Tip
    • Don't have an account yet? Click Get Started to create one. Visit our partner link https://surfshark.com/ to learn more about available offers.
    • You may be required to enter a 2FA code, if 2FA is enabled on your Surfshark account. Find it in your email or authenticator app.
  12. Select a Default Rule and VPN Policy. Search and select a server. Tap the ✔ icon at the top right to save and apply.

    Explanation
    • Allow All Devices: by default allows all devices to use the VPN connection unless a policy rule specifies otherwise.
    • Ban All Devices: by default prevents all devices from using the VPN connection unless a policy rule explicitly allows them to use it.
    • Disable: disables the VPN policy rule, then traffic matching this rule is not affected by the policy.
    • VPN Kill Switch: blocks internet access if the VPN connection is lost, preventing traffic from being sent outside the VPN tunnel.
    • Domain: applies the VPN policy to specific domain names, and you need to enter one or more domains, such as example.com.
    • Remote Subnet: applies the VPN policy to a specific destination network, and you need to enter the subnet in CIDR notation, such as 192.168.10.0/24.
  13. Toggle on to activate this VPN client profile. You can view, edit, or delete this profile as needed.

Using Web Interface

  1. Log in your router's web interface at cudy.net (or 192.168.10.1).

  2. Go to General Settings > VPN > VPN Client. Click Add.

  3. Click Surfshark in the VPN Client pop-up window.

  4. Enter your Surfshark account Username and Password, and click Continue.

    Tip
    • Don't have an account yet? Click Get Started to create one. Visit our partner link https://surfshark.com/ to learn more about available offers.

    • You may be required to enter a 2FA code, if 2FA is enabled on your Surfshark account. Find it in your email or authenticator app.

  5. Create a Description, select a Default Rule and VPN Policy. Search and select a server. Click Save & Apply.

    Explanation
    • Allow All Devices: by default allows all devices to use the VPN connection unless a policy rule specifies otherwise.
    • Ban All Devices: by default prevents all devices from using the VPN connection unless a policy rule explicitly allows them to use it.
    • Disable: disables the VPN policy rule, then traffic matching this rule is not affected by the policy.
    • VPN Kill Switch: blocks internet access if the VPN connection is lost, preventing traffic from being sent outside the VPN tunnel.
    • Domain: applies the VPN policy to specific domain names, and you need to enter one or more domains, such as example.com.
    • Remote Subnet: applies the VPN policy to a specific destination network, and you need to enter the subnet in CIDR notation, such as 192.168.10.0/24.
  6. Toggle Enable to activate this VPN client profile. You can view, edit, or delete this profile as needed.