retom
November 22, 2022, 4:48pm
1
I have openwrt (192.168.1.3) with two interface lan (192.168.1.) and wireguard (10.0.0. ).
(Not using wan)
if i ping ip address from router, to lan (192.168.1.2) or wireguard (10.0.0.5) all work fine.
On the computer with address 192.168.1.2, i make static route to 10.0.0.* throw 192.168.1.3.
Ping to 10.0.0.5 not working, reason "Destination Net Unreachable".
How i enable ip forwarding between two lans in the openwrt?
Routes should be added to the routers, not individual clients.
grrr2
November 22, 2022, 7:56pm
3
hi, what is your zone setup pls?
if both networks are pinged from the router normally, then I will assume that the route through openwrt is incorrectly registered on the client PC
1 Like
grrr2
November 23, 2022, 4:36pm
6
did you assign any zone to wg interface?
you might need to create/add zone and set lan -> wg zone forwarding accept rule.
retom
November 23, 2022, 5:05pm
7
no, i forgot
After I fix the config (zone and mascarading for wireguard + forwarding rules), ping and traceroute worked. But http/https traffic not stil working
i use this article:
Thanks all. We have it working now! This thread will be marked [Solved].
psherman: Agree that the network design is clunky. It wasn't designed from the ground-up but rather came to be over time and certainly could use improvement.
Relative to the firewall setup on Router 3, we just had it wide open when setting up WireGuard to make sure it wasn't working against us. It's since been closed up. Though, as you point out, since it's not exposed to the outside world, we're not too worried abo…