FOR TIPS, gUIDES & TUTORIALS

subscribe to our Youtube

GO TO YOUTUBE

14455 questions

17168 answers

28195 comments

0 members

We are migrating to our new platform at https://community.teltonika.lt. Moving forward, you can continue discussions on this new platform. This current platform will be temporarily maintained for reference purposes.
+2 votes
1,418 views 3 comments
by
Hello,

I successfully configured a Wireguard connection between an IPad and the RUT955. It is possible to reach the Router on his VPN private address (10.10.x.1) and it local LAN Adress (192.168.x.1).

I like to connect to other devices in the router LAN (192.168.x.10, 192.168.x.20). Allowed IPs on the IPad WG Client are 10.10.x.1/32, 192.168.x.0/24), so from this side I should work.

What is the correct firewall setup to get behind the router in the LAN?

Thanks for advice.

1 Answer

+1 vote
by
Problem solved.

Two steps are necessary:

1) add static route to the lan net work:

main table, lan, 192.168.x.0, 255.255.255.0, 192.168.x.1

2) in the firewall, add the lan zone to the wg zone.

easy, when you know...
by anonymous

Champion! Thank you yes

by
how can I add the lan zone to the wg zone? on rutx12
by anonymous
In Network->Firewall->General Settings, set Lan->Wireguard.(Inpout, Output, Forward) and Wireguard->Lan.(Input, Output, Forward) to Accept, and set Masquerade for both.