white-nightfall-45806
11/27/2022, 1:49 AMwhite-nightfall-45806
11/27/2022, 1:59 AMnarrow-flag-53296
11/27/2022, 5:48 AMnarrow-flag-53296
11/27/2022, 7:45 PMwhite-nightfall-45806
11/27/2022, 7:48 PMwhite-nightfall-45806
11/27/2022, 8:20 PMwg show shows recent handshakes and I can ping both netmaker IPs and my internal home network ranges on all involved systems.
However...ping seems to be the only thing working at this point. If I try to hit an internal server on one of its listening ports from my Nginx Proxy Manager server it fails with no route to host even though ping works.white-nightfall-45806
11/27/2022, 9:04 PMwhite-nightfall-45806
11/27/2022, 9:12 PMNo route to host error when doing anything that isn't a ping.white-nightfall-45806
11/27/2022, 9:39 PMtcpdump on my egress node shows that the traffic is hitting the internal node over the wireguard network, but there is no return traffic.
So it seems I'm having trouble with the return path.white-nightfall-45806
11/27/2022, 9:41 PMwhite-nightfall-45806
11/27/2022, 9:45 PMmasquerade to the egress host's firewall for the internal interface and the traffic started flowing 2 ways!!narrow-flag-53296
11/28/2022, 3:32 PMnarrow-flag-53296
11/28/2022, 3:33 PM