I need to create a site to site connection. I installed WG in LXC debian and also in Wifi router with OpenWRT (see image).
My goal is mutual ping 192.168.30.209 <--> 192.168.1.22.
I Ping from 192.168.30.209 to 10.11.0.3
I ping from 10.11.0.3 to 192.1668.1.22
How should I set the routing in openwrt to mutual ping from 192.168.30.209 to 192.168.1.22 ?
My config OpenWRT:
/etc/config/network
config interface 'wg0'
option proto 'wireguard'
option private_key 'xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx='
option listen_port '51821'
list addresses '10.11.0.3/32'
config wireguard_wg0
option description 'server'
option public_key 'xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx='
list allowed_ips '10.11.0.0/24'
list allowed_ips '192.168.1.0/24'
option route_allowed_ips '1'
option endpoint_host 'my-wg-example.com'
option endpoint_port '51821'
option persistent_keepalive '25'
/etc/config/firewall
config zone
option name 'wg0'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'REJECT'
list network 'wg0'
config forwarding
option src 'wg0'
option dest 'lan'
LXC Wireguard (debian 11)
[Interface]
PrivateKey = xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=
Address = 10.11.0.1/32
ListenPort = 51821
PreUp = iptables -I FORWARD -i wg1 -d 0.0.0.0/0 -j REJECT
PostDown = iptables -D FORWARD -i wg1 -d 0.0.0.0/0 -j REJECT
PreUp = iptables -I FORWARD -i wg1 -d 192.168.1.0/24 -j ACCEPT
PostDown = iptables -D FORWARD -i wg1 -d 192.168.1.0/24 -j ACCEPT
[Peer]
PublicKey = xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=
AllowedIPs = 10.11.0.3/32,192.168.30.0/24