WireGuard & ER605 - Cannot Handshake

WireGuard & ER605 - Cannot Handshake

WireGuard & ER605 - Cannot Handshake
WireGuard & ER605 - Cannot Handshake
a week ago - last edited a week ago
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.6 Build 20240718 Rel.82712

Hello, Guys, I am trying to configure WireGuard VPN through Cloud Mgmt using this video as guidance, but something is happening that I cannot see the final handshake being done:

 

 

I did also the NAT configuration, but something is still wrong/missing:

 

 

PS1: The subnet 100.X is different/unique for VPN that one from my LAN that is 0.X.

PS2: Will I also need a new VLAN/Interface?

 

Could you enlighten me?

 

AC

  0      
  0      
#1
Options
4 Reply
Re:WireGuard & ER605 - Cannot Handshake
a week ago

Hi @AleCalixto 

Thanks for posting in our business forum.

Use the guide:

VPN Connectivity and Access Troubleshooting Guide

If that does not resolve, post every result in that troubleshooting guide in your next reply.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  0  
  0  
#2
Options
Re:WireGuard & ER605 - Cannot Handshake
a week ago

  @Clive_A 

 

1. I need guidance with IP allocation

2. Time definition I think it's ok, all equal

3. I also need help with NAT and VLAN (if needed)

4. No censure by country, I use other US VPNs

5. I'm using WireGuard

6. Did it several times

  0  
  0  
#3
Options
Re:WireGuard & ER605 - Cannot Handshake
a week ago

Hi @AleCalixto 

Thanks for posting in our business forum.

AleCalixto wrote

  @Clive_A 

 

1. I need guidance with IP allocation

2. Time definition I think it's ok, all equal

3. I also need help with NAT and VLAN (if needed)

4. No censure by country, I use other US VPNs

5. I'm using WireGuard

6. Did it several times

What's your WAN IP like?

Snip from the controller WAN status.

 

Please mosaic your sensitive information. Here is a list of information considered sensitive:

1. Public IP address on your WAN if your WAN is.

2. Real MAC address of your device.

3. Your personal information including address, domain name, and credentials.

For troubleshooting purposes, when a WAN IP is needed, please leave some values visible for identification.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  0  
  0  
#4
Options
Re:WireGuard & ER605 - Cannot Handshake
a week ago

  @Clive_A 

 

All WAN info is sensitive, but I saw that I have two different IPs, one public and other as the IPv4, also two DNS IPs and one for the provider's gateway.

 

LAN: I have 192.168.0.1 as the Router LAN address, connected to a Mesh Router serving the devices with 192.168.2.1 network.

 

I am allocating 10.10.10.1 for the VPN server, but I also tried 192.168.100.1 and many others, always updating the NAT rule accordingly.

  0  
  0  
#5
Options