Bypass CGNAT to access WireGuard server

My new ISP works with CGNAT, so my OpenWrt WireGuard server is unreachable. I was reading about Tailscale, but my poor TP-Link C60 does not have enough storage space to install it. So I was wondering if my OpenWrt router can be a peer of a WireGuard VPS I set up in DigitalOcean? I need to access my IP cameras, my NVR and the router. Does this make sense?

I read a similar thread, but it didn't involve the cloud VPS.

The ISP wants to charge an additional $12/month for a public IP, but the droplet costs half of that per month (right now I have a free credit), so maybe it's worth it?

Any help will be appreciated. Thanks in advance!

It certainly can, the VPS will be the man in the middle.

Lots of threads about this, I have setup something like this on my Oracle cloud VPS, not that I need it as I have full dual stack :slight_smile:

Other things to research zerotier but will be in the same ballpark as tailscale, also look at ngrok.

But if you have a public IPv6 address you should be able to use that instead of an IPv4 address

Why not use IPv6?

1 Like

Thanks for your responses!

The ISP doesn't have IPv6, I asked them :frowning:

So what do I need to search for, exactly? "site to site VPN"?