F5F Stay Refreshed Power Users Networks Have questions about setting up a Ubiquiti WireGuard server with double NAT?

Have questions about setting up a Ubiquiti WireGuard server with double NAT?

Have questions about setting up a Ubiquiti WireGuard server with double NAT?

S
SrUrsoo
Member
171
06-25-2018, 09:48 PM
#1
I'm still residing at home while juggling my first job and apartment search. This limits my ability to interfere with my family's internet. To address this, I purchased a Cloud Gateway Ultra and connected it via MOCA to my home Verizon router. This setup allows me to host my PC, server, and pihole behind my own firewall, which I can customize as needed.

On my homelab, I run several services securely accessible from outside. I configured local domains and an ACL in Nginx to restrict access to specific IP ranges, ensuring the broader internet remains unaffected. The setup performs excellently.

Recently, I attempted to deploy a WireGuard server on the Cloud Gateway to connect to the services protected by the ACLs. However, it isn't functioning correctly. On my home network, it connects smoothly, but when using cellular or corporate networks, access fails.

I consulted my company's network admin, who confirmed no blocking of VPN connections, but noted that if cellular access doesn't work, it likely won't on the internal network either. I verified port forwarding to 51820 via UDP on the gateway and other ports, which appears to be operational.

I tried the Unifi Teleport service, which works fine, but I'm still troubleshooting WireGuard. I only configured the essential services for the server and scanned a QR code to add my client to my iPhone. I'm unsure what else might be causing the issue and would appreciate any guidance. Thanks!
Enspist
S
SrUrsoo
06-25-2018, 09:48 PM #1

I'm still residing at home while juggling my first job and apartment search. This limits my ability to interfere with my family's internet. To address this, I purchased a Cloud Gateway Ultra and connected it via MOCA to my home Verizon router. This setup allows me to host my PC, server, and pihole behind my own firewall, which I can customize as needed.

On my homelab, I run several services securely accessible from outside. I configured local domains and an ACL in Nginx to restrict access to specific IP ranges, ensuring the broader internet remains unaffected. The setup performs excellently.

Recently, I attempted to deploy a WireGuard server on the Cloud Gateway to connect to the services protected by the ACLs. However, it isn't functioning correctly. On my home network, it connects smoothly, but when using cellular or corporate networks, access fails.

I consulted my company's network admin, who confirmed no blocking of VPN connections, but noted that if cellular access doesn't work, it likely won't on the internal network either. I verified port forwarding to 51820 via UDP on the gateway and other ports, which appears to be operational.

I tried the Unifi Teleport service, which works fine, but I'm still troubleshooting WireGuard. I only configured the essential services for the server and scanned a QR code to add my client to my iPhone. I'm unsure what else might be causing the issue and would appreciate any guidance. Thanks!
Enspist