I have a question about wireguard. Little bit background 1st: I have 2x r7800 with 1 as router and AP, the other as managed switch and AP, both running multiple vlans and ssids.
Currently, I have wireguard running fine on my router. However, I was thinking that if I run wireguard on the other r7800 that may give me better performance as the router has more time available to actually do routing.
So I set up wireguard on the AP, made a port forward on the router to the AP. I can establish a link, everything works if I e.g. access luci on the AP, but the problem is I cannot access anything else. E.g. If I try to access luci on the router I just do not get a connection. I put the wireguard interface in the same firewall zone, with accept/accept/accept, so it should just forward the packets.
I think fundamentally it should be possible what I am trying to do but is it possible with how wireguard is implemented? I seem to recall that there was some issue with wireguard and routing, but cannot find back what it was anymore.
Does it even help performance to move the wireguard to the AP? (if not then I can just as well abort my attempts)