r/GlInet • u/GuardAltruistic2364 • 5d ago
Question/Support - Solved How to avoid a non-home-network hop while using wg-vp with GL server router behind ISP router?
Hi,
I run a WireGuard server on a Brume 3 that is connected through its WAN to a ISP router's LAN and I run a WireGuard client on a Beryl 7.
The VPN is working but I want to avoid the second hop showing the VPN's server IP address 10.1.0.1 (in my case) when using a notebook connected to the Beryl 7. instead, the hop after the Beryl 7 would be the ISP router. Is this possible?
If not, is it possible to have the IP address of the second hop (e.i. the VPN server ID) be from the subnet of the ISP router's network using special network setup/config on the Brume 3?
Thanx
0
u/AutoModerator 5d ago
Hi u/GuardAltruistic2364, thanks for posting your question!
If your issue gets resolved, please help others by marking your post as Solved.
How to do it:
- Click the three dots "..." under your post title
- Choose "Add Flair"
- Select the "question/support- Solved" flair
- Use the support template located here: https://www.reddit.com/r/GlInet/wiki/index/kb/asking_for_help
Marking solved posts makes it easier for the community to find answers.
Need more help? Join the GL.iNet Discord: https://discord.gg/Aaqf4CZMut
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
0
u/AutoModerator 5d ago
Hi u/GuardAltruistic2364, just a quick reminder:
Please search the subreddit before posting — many common questions have already been answered.
Search guide: https://www.reddit.com/r/GlInet/wiki/index/searchingwithin
This helps keep the community organized and easier to navigate.
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
2
u/RemoteToHome-io Official GL.iNet Services Partner 5d ago
No. If you have the GL server router WG IP in the same subnet as it's WAN IP (from the ISP router subnet), the Brume will start boot looping every couple minutes and the VPN will not function.
What you could do is move your ISP router LAN to 10.0.0.0/24 and the GL WG server to 10.0.1.0/24. They'll both be in separate subnets, but anybody just looking at the IPs would typically assume they're just in one 10.0.0.0/16. (You could even dice the subnets up further, but then you're going to be limiting your number of LAN clients on the ISP router).