This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| vpn-wireguard [2025/09/29 18:44] – [Status] -Move description of first block of text above screenshot hogwild | vpn-wireguard [2025/11/19 20:30] (current) – [Problem: Traffic flowing in one Direction] -Change to: " hogwild | ||
|---|---|---|---|
| Line 7: | Line 7: | ||
| Note that tabs or other interface components in your menus may be different colours, depending on which web interface theme is chosen in the Admin Access menu. | Note that tabs or other interface components in your menus may be different colours, depending on which web interface theme is chosen in the Admin Access menu. | ||
| - | This HOWTO: | + | For an introduction to WireGuard, and some basic theory, the [[wireguard_on_freshtomato|Set up WireGuard]] |
| Unless using an external VPN provider, it's best to " | Unless using an external VPN provider, it's best to " | ||
| Line 99: | Line 99: | ||
| \\ | \\ | ||
| - | **Poll Interval** - WireGuard's PersistentKeepalive setting. | + | **Poll Interval** - a watchdog timer for the WireGuard |
| - | This determines how often clients behind NAT send keepalive packets | + | This causes FreshTomato |
| - | + | ||
| - | \\ | + | |
| - | + | ||
| - | * The recommended setting is 25 seconds. This causes | + | |
| - | * Default: 0. This disables the feature, so packets are sent only\\ as needed. This is fine for most users not behind restrictive NAT. | + | |
| \\ | \\ | ||
| Line 435: | Line 430: | ||
| If a link is up, the handshake done and the tunnel established, | If a link is up, the handshake done and the tunnel established, | ||
| - | For example, for this WireGuard instance: | + | \\ |
| + | For example, for this WireGuard instance: | ||
| The first block of text includes this router' | The first block of text includes this router' | ||
| Line 445: | Line 440: | ||
| - Public key | - Public key | ||
| - UDP listening port | - UDP listening port | ||
| - | |||
| - | \\ | ||
| - | |||
| \\ \\ {{:: | \\ \\ {{:: | ||
| \\ | \\ | ||
| - | |||
| - | The first block of text includes this router' | ||
| - | |||
| - | - WireGuard Interface name | ||
| - | - Interface' | ||
| - | - Public key | ||
| - | - UDP listening port | ||
| - | |||
| - | \\ | ||
| The second block of text displays the Peer' | The second block of text displays the Peer' | ||
| Line 498: | Line 481: | ||
| * Remote LAN IP | * Remote LAN IP | ||
| - | | + | |
| \\ | \\ | ||
| + | |||
| + | |||
| + | ==== Problem: Traffic flowing in only one Direction ==== | ||
| \\ | \\ | ||
| + | |||
| + | Sometimes, it may occur that from one end of your setup (" | ||
| + | |||
| + | It this occurs, please check that there are default routes setup from B to A. Also, please check that on the client side, (in this case, end B), the " | ||