Hello everyone!
My objective is to encrypt my actual IP address on a work laptop, without actually installing a VPN software on it (for obvious reasons.)
So for the internet going into it to be already encrypted.
Is there any way to do this without modifying the router firmware?
Probably you could buy some device (essentially another router) to sit between your current router and the rest of your LAN. Run the VPN client on that device.
Well, openwrt or dd-wrt are obvious choices, but since you don’t want to modify the router firmware, you can just get a router that has the VPN client built in (not server, you want to be using your router as VPN client in your scenario). Most “better” routers should allow you to connect to OpenVPN, Wireguard and/or similar out of the box. Obviously make sure you’re buing the right device with the desired features first.
Can this prevent the company from tracking my location if I work from home? I am not planning to temper with the company laptop, but rather install a VPN on the router
If it’s a company device, it will probably have some kind of RMM tool (remote monitor and management). This would control how you use your device. Even if you have the privileges to install software, it wouldn’t hide your activity from the RMM. Some RMM tools don’t even allow you to change the DNS. I’ve used tools like Cisco Umbrella which will revert any DNS changes you make. There are really too many different ways your VPN traffic can be neutralized. Better to not use your company laptop for anything you wouldn’t want your NetAdmin to see.
Because with a work computer you login with credentials usually. Regardless of if that’s spoofed or not, example. Larry logged into that computer and Larry is liable, regardless of if his computer now appears to be in new Zealand. It was his credentials that logged in to the physical device.