All,
I have setup a Wireguard Tunnel Server, and my peers have validated the settings on my hAP AC Lite.
I am running a Firewall behind a residential router, so it's topology is as follows:
hAP<-->VLAN<-->FW<-->Router<-->Inet
So ,the AREDN aspect is as follows:
TunnelServer<-->VLAN<-->FW<-->Router<-->TunnelClient
Has anyone successfully setup a Tunnel Server with a FW and residential router like the above example, and if so, what settings/rules did you implement for its success? I am concerned that if there is double NATting taking place, this may be the issue.
73,
Mark
I have setup a Wireguard Tunnel Server, and my peers have validated the settings on my hAP AC Lite.
I am running a Firewall behind a residential router, so it's topology is as follows:
hAP<-->VLAN<-->FW<-->Router<-->Inet
So ,the AREDN aspect is as follows:
TunnelServer<-->VLAN<-->FW<-->Router<-->TunnelClient
Has anyone successfully setup a Tunnel Server with a FW and residential router like the above example, and if so, what settings/rules did you implement for its success? I am concerned that if there is double NATting taking place, this may be the issue.
73,
Mark
Also, you don't normally need to use a VLAN for tunnel traffic into the hAP as that is normally untagged on AREDN nodes that have a dedicated port for the WAN connection. If you haven't changed stuff, port 1 on the hAP is the WAN port and operates untagged.
+1 with Jim K6CCC.
What is the function of your 'VLAN' ?
I have one remaining legacy tunnel on my hAP-ac-lite.
(All others have been moved to wireguard tunnels.)
My firewall-router forwards inbound packets with port 5525 to 192.168.8.82 (my hAP-ac-lite).
My hAP-ac-lite gets a reserved IP address (192.168.8.92) from my firewall-router (192.168.8.1) via DHCP.
Does your tunnel server configuration page look similar to the attached image?
73, Chuck