Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Wireguard Site-to-Site + Mobile connection only routes 1 side of tunnel

    WireGuard
    3
    4
    846
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      xxnumbxx
      last edited by

      I followed the guide on this site and have a successful site-to-site connection. I added a second tunnel for mobile clients on site a. I can connect to the site a subnet but unable to connect to anything on site b. I tried adding site b subnet to allowed ips both in wireguard and in the wireguard client. No luck. I also tried adding another peer to the site-to-site connection but this breaks wireguard. How can I get access to both sites from my mobile connection? Appreciate any help.

      Site A
      local 10.20.10.0/24

      Site B
      local 10.30.10.0/24

      X 1 Reply Last reply Reply Quote 0
      • X
        xxnumbxx @xxnumbxx
        last edited by

        @xxnumbxx

        I got it. I created a NAT outbound rule allowing traffic from the mobile VPN.

        P 1 Reply Last reply Reply Quote 0
        • N
          neoos
          last edited by

          Hi

          Is possible explain?

          My config:

          Site A: 192.168.1.x
          Site B: 192.168.2.x

          WG IP client Mobile: 10.10.10.3

          The config the WG is in site A, all ok, but if acces to site B ( 192.168.2.x) is not possible.

          How to

          1 Reply Last reply Reply Quote 0
          • P
            PatPend @xxnumbxx
            last edited by

            @xxnumbxx said in Wireguard Site-to-Site + Mobile connection only routes 1 side of tunnel:

            I got it. I created a NAT outbound rule allowing traffic from the mobile VPN.

            @xxnumbxx I tried this with no success.
            Which side gets the outbound rule and which IP ranges go in the rule? Can you post an example please?

            1 Reply Last reply Reply Quote 0
            • J Jarhead referenced this topic on
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.