Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel

Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel

Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago
Model: ER7412-M2  
Hardware Version: V1
Firmware Version: 1.1.0

Hello

I have setup the Wireguard 

 

 

 

 

I have set this up using the guide https://community.tp-link.com/en/business/forum/topic/619652 

But after I have activate the tunnel whick works fine I tried to ping the router for example 192.168.123.254 or even other devices in the network 192.168.123.xx and get no respons. What am I doing wrong or what am I forgetting to do?
It must be something I forget I think but I've tried so many things and searched so many tips and tricks on the internet but I can't get it working. The tunnel is active but it stops there. Something with the listen port 52191 on the interface but I configured port 51820 on the Wireguard ?

  0      
  0      
#1
Options
9 Reply
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago

  @Rytec 

 

it looks correct, so if you don't have any port forward to wireguard then it should work, you have to remember that even if everything is wrong in the configuration file wireguard will connect. there is no control on whether you are connected or not. but look in the omada console if you are connected. you will find this under vpn status

 

 

Look at the LAST HANDSHAKE date and time, if there is nothing there then you have not been able to connect.

 

I have also seen in some cases that Address = with /24 can cause problems, try with /32 like this Address = 192.168.124.2/32

 

 

 

 

  0  
  0  
#2
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago

  @MR.S 

 

 

and allowed address is wrong, try 192.168.124,2/32

 

  0  
  0  
#3
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago - last edited 6 hours ago

 

 

I have changed allowed IP to 192.168.124.2/32

I would like to connect the whole LAN 192.168.123.xxx if possible

  0  
  0  
#7
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago

Rytec wrote

  @MR.S 

 

Thank you but I like to connect the whole LAN 192.168.123.xxx 

  @Rytec 

 

yes but you don't set peer configuration on the server but on peer configuration on the client, and there you have set AllowedIPs = 192.168.123.0/24 and that is correct. because you should have access to this network from the client

 

  0  
  0  
#8
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
6 hours ago

  @Rytec 

what is ip om wireguard server?

 

  0  
  0  
#9
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
5 hours ago

  @Rytec 

Change wireguard server ip to 192.168.124.1 if you dont have this ip, in peer section on server sett peer ip to 192.168.124.2/32

 

and client file is like that.

 

 

  0  
  0  
#10
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
3 hours ago

MR.S wrote

  @Rytec 

Change wireguard server ip to 192.168.124.1 if you dont have this ip, in peer section on server sett peer ip to 192.168.124.2/32

 

and client file is like that.

 

 

  @MR.S 

If I want to make a new wireguard connection on another pc do I have to create also a new Wireguard on the Omada and a new peer with different listen ports or can I use the same?

  0  
  0  
#11
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
3 hours ago

  @Rytec 

 

 

no, on server, create a new peer only and reuse wireguard, you have to have new public key on peer and reuse public key in wireguard server. and you need a new ip 192.168.124.3/32 to the new per.

 

  0  
  0  
#12
Options
Re:Wireguard on Omada Controller + Windows PC OK but can't ping LAN through Wireguard tunnel
2 hours ago

MR.S wrote

Rytec wrote

  @MR.S 

 

Thank you but I like to connect the whole LAN 192.168.123.xxx 

  @Rytec 

 

yes but you don't set peer configuration on the server but on peer configuration on the client, and there you have set AllowedIPs = 192.168.123.0/24 and that is correct. because you should have access to this network from the client

 

  @MR.S

It's weird that you can allow on the client peer configuration side which network you want to have access to, I would assume you restrict this on server peer configuration side. 

  0  
  0  
#13
Options