Wireguard on ER605 appears to be blocking SSH and Telnet traffic

Wireguard on ER605 appears to be blocking SSH and Telnet traffic

Wireguard on ER605 appears to be blocking SSH and Telnet traffic
Wireguard on ER605 appears to be blocking SSH and Telnet traffic
Tuesday - last edited Yesterday
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.3.0 Build 20250428 Rel 18967

I have setup up WireGuard on the ER605 and can successfully access HTTP/S resources on my LAN. I was able to create and use SSH sessions on a two servers on my LAN but now can't. There have been no changes to the servers firewalls to trigger this. Using Wireshark I can see the the HTTP traffic from WireGuard on my server but there is nothing for port 22 on either server. I'm using WireGuard for IOS V1.0.16 and Termius V6.3.0 which works fine while on the LAN. Other documentation for server implemented WireGuard talks about needing the set the firewall to allow WG0 (the WireGuard interface) to pass the traffic but there is nothing to indicate how that could be done on the ER605 or if it needs to be done. Are there any tricks that I should know?

 

 

  0      
  0      
#1
Options
1 Accepted Solution
Re:Wireguard on ER605 appears to be blocking SSH and Telnet traffic-Solution
Tuesday - last edited Yesterday

  @Greyghoster 

There is nothing else you need to do with the router.

I don't think this is a problem with the Omada gears. 

Check if your SSH can be accessed over layer 3. 

As our products support SSH and some require L3 accessbility before it becomes accessible. I assume this would be the same for other devices on the market. 

Recommended Solution
  1  
  1  
#2
Options
1 Reply
Re:Wireguard on ER605 appears to be blocking SSH and Telnet traffic-Solution
Tuesday - last edited Yesterday

  @Greyghoster 

There is nothing else you need to do with the router.

I don't think this is a problem with the Omada gears. 

Check if your SSH can be accessed over layer 3. 

As our products support SSH and some require L3 accessbility before it becomes accessible. I assume this would be the same for other devices on the market. 

Recommended Solution
  1  
  1  
#2
Options