Wireguard - under the covers

Wireguard - under the covers

Wireguard - under the covers
Wireguard - under the covers
3 weeks ago - last edited 3 weeks ago
Model: ER605 (TL-R605) Β 
Hardware Version: V2
Firmware Version: 2.2.6 Build 20240718 Rel.82712

I'm trying to understand how the SDN (OC200 Firmware Version = v2.16.3 Build 20240620 Rel.81038 and SDN v5.14.26.23) configures Wireguard.

 

I am interested to see if Masquerading is turned 'on' or 'off' and if it is possible to switch this setting?

 

I am assuming MSS Clamping is 'off' and that possibly there is a 'hidden' firewall zone for wireguard that dictates input, output and forward settings.

 

Regards,

 

Mike

 

 

Β  0 Β  Β  Β 
Β  0 Β  Β  Β 
#1
Options
1 Accepted Solution
Re:Wireguard - under the covers-Solution
3 weeks ago - last edited 3 weeks ago

  @Clive_A Hi Clive,

 

I've now set my Wireguard Peer allowed IP's to:

 

0.0.0.0/1

128.0.0.0/1

::/1

8000::/1

 

Many thanks for your guidance.

 

Mike

Recommended Solution
Β  1 Β 
Β  1 Β 
#3
Options
3 Reply
Re:Wireguard - under the covers
3 weeks ago - last edited 3 weeks ago

Hi @mortimm 

Thanks for posting in our business forum.

It depends on how you configure your routing in peer settings.

Masking Your IP Address: Setting Up a Full Tunnel VPN Connection (PPTP/L2TP/OpenVPN/WireGuard)

 

We encourage you to search and use the label and tag to find out the existing guides we have.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update! β˜›Download Beta Here☚ β˜› β˜… Configuration Guide β˜… ☚ β˜› β˜… Knowledge Base β˜… ☚ β˜› β˜… Troubleshooting β˜… ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Β  3 Β 
Β  3 Β 
#2
Options
Re:Wireguard - under the covers-Solution
3 weeks ago - last edited 3 weeks ago

  @Clive_A Hi Clive,

 

I've now set my Wireguard Peer allowed IP's to:

 

0.0.0.0/1

128.0.0.0/1

::/1

8000::/1

 

Many thanks for your guidance.

 

Mike

Recommended Solution
Β  1 Β 
Β  1 Β 
#3
Options
Re:Wireguard - under the covers
3 weeks ago

Hi @mortimm 

Thanks for posting in our business forum.

mortimm wrote

  @Clive_A Hi Clive,

 

I've now set my Wireguard Peer allowed IP's to:

 

0.0.0.0/1

128.0.0.0/1

::/1

8000::/1

 

Many thanks for your guidance.

 

Mike

As we don't support v6 yet, setting v6 addresses here does not hurt a thing. But if you run into trouble when you access IPv6, remove them.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update! β˜›Download Beta Here☚ β˜› β˜… Configuration Guide β˜… ☚ β˜› β˜… Knowledge Base β˜… ☚ β˜› β˜… Troubleshooting β˜… ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Β  1 Β 
Β  1 Β 
#4
Options

Information

Helpful: 0

Views: 143

Replies: 3

Related Articles