Re: WireGuard connecting hosts WAN->LAN

2020-03-18 Thread Bruno Wolff III
On Sat, Mar 14, 2020 at 16:33:44 +0100, Germano Massullo wrote: A simple question to Wireguard developers, since while asking for help in OpenWRT forum[1] I have been told that I am asking a thing that Wireguard cannot do, so I want to ask upstream if it is possible or not Scenario: A = intern

Re: WireGuard connecting hosts WAN->LAN

2020-03-15 Thread Kent Friis
> Scenario: > A = internet (WAN) host (WireGuard IP 10.1.1.3) > B = OpenWRT router (WireGuard IP 10.1.1.1) > C = LAN host (WireGuard IP 10.1.1.2) What you have been told is correct for the case of A connecting to C. there is no way for A to reach the Wireguard port on C without B forwarding that p

Re: WireGuard connecting hosts WAN->LAN

2020-03-14 Thread Germano Massullo
Il 14/03/20 19:16, Luis Ressel ha scritto: > On Sat, Mar 14, 2020 at 04:33:44PM +0100, Germano Massullo wrote: >> I want to: >> 1) connect A to C passing through B. I don't want to expose C to >> internet at all, (so no things like port forwarding) >> 2) A must have C public key (and viceversa), so

Re: WireGuard connecting hosts WAN->LAN

2020-03-14 Thread Luis Ressel
On Sat, Mar 14, 2020 at 04:33:44PM +0100, Germano Massullo wrote: > I want to: > 1) connect A to C passing through B. I don't want to expose C to > internet at all, (so no things like port forwarding) > 2) A must have C public key (and viceversa), so in case of B being > compromised, the A<->C VPN