MKL81
Newbie | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Здравствуйте. Интернет завален аналогичными проблемами, но решений почему-то особо не видно, а те что есть - не помогают. Помогите пожалуйста решить проблему. 192.168.0.* это локальная wi-fi домашняя сеть 10.89.*.* это 4G интернет от интерфейса wwan0 Настройки Wireguard-сервер на Ubuntu [Interface] Address = 10.0.0.1/24,fd42:42:42::1/64 ListenPort = 61459 PrivateKey = ************* PostUp = iptables -I INPUT -p udp --dport 61459 -j ACCEPT PostUp = iptables -I FORWARD -i ens3 -o wg0 -j ACCEPT PostUp = iptables -I FORWARD -i wg0 -j ACCEPT PostUp = iptables -t nat -A POSTROUTING -o ens3 -j MASQUERADE PostUp = ip6tables -I FORWARD -i wg0 -j ACCEPT PostUp = ip6tables -t nat -A POSTROUTING -o ens3 -j MASQUERADE PostDown = iptables -D INPUT -p udp --dport 61459 -j ACCEPT PostDown = iptables -D FORWARD -i ens3 -o wg0 -j ACCEPT PostDown = iptables -D FORWARD -i wg0 -j ACCEPT PostDown = iptables -t nat -D POSTROUTING -o ens3 -j MASQUERADE PostDown = ip6tables -D FORWARD -i wg0 -j ACCEPT PostDown = ip6tables -t nat -D POSTROUTING -o ens3 -j MASQUERADE ### Client User01 [Peer] PublicKey = *********** PresharedKey = ********** AllowedIPs = 10.0.0.2/32,fd42:42:42::2/128 ### Client User02 [Peer] PublicKey = ********** PresharedKey = ********** AllowedIPs = 10.0.0.3/32,fd42:42:42::3/128 И wireguard клиент на Debian [Interface] PrivateKey = ************ Address = 10.0.0.2/32,fd42:42:42::2/128 DNS = 1.1.1.1,8.8.8.8 [Peer] PublicKey = ********** PresharedKey = ************* Endpoint = 185.204.*.*:61459 AllowedIPs = 0.0.0.0/0,::/0 Почему-то на клиенте после запуска wireguard-клиента командой "sudo wg-quick up wg0" - пропадает интернет полностью. Посоветуйте пожалуйста решение проблемы. sudo wg-quick up wg0 --------------------------------------------- [#] ip link add wg0 type wireguard [#] wg setconf wg0 /dev/fd/63 [#] ip -4 address add 10.0.0.2/32 dev wg0 [#] ip -6 address add fd42:42:42::2/128 dev wg0 [#] ip link set mtu 1420 up dev wg0 [#] resolvconf -a wg0 -m 0 -x [#] wg set wg0 fwmark 51820 [#] ip -6 route add ::/0 dev wg0 table 51820 [#] ip -6 rule add not fwmark 51820 table 51820 [#] ip -6 rule add table main suppress_prefixlength 0 [#] nft -f /dev/fd/63 [#] ip -4 route add 0.0.0.0/0 dev wg0 table 51820 [#] ip -4 rule add not fwmark 51820 table 51820 [#] ip -4 rule add table main suppress_prefixlength 0 [#] sysctl -q net.ipv4.conf.all.src_valid_mark=1 [#] nft -f /dev/fd/63 sudo wg show ------------------------------------------ interface: wg0 public key: *********** private key: (hidden) listening port: 46913 fwmark: 0xca6c peer: ************ preshared key: (hidden) endpoint: 185.204.*.*:61459 allowed ips: 0.0.0.0/0, ::/0 latest handshake: 15 seconds ago transfer: 124 B received, 644 B sent ip rule на клиенте с включённым vpn ------------------------------------------- 0: from all lookup local 32764: from all lookup main suppress_prefixlength 0 32765: not from all fwmark 0xca6c lookup 51820 32766: from all lookup main 32767: from all lookup default ip rule на клиенте с выключённым vpn ------------------------------------------- 0: from all lookup local 32766: from all lookup main 32767: from all lookup default ip route show table all на клиенте с включённым vpn ------------------------------------------- default dev wg0 table 51820 scope link default via 10.89.75.241 dev wwan0 default via 192.168.0.1 dev wlan0 proto dhcp metric 600 10.89.75.224/27 dev wwan0 proto kernel scope link src 10.89.75.240 192.168.0.0/24 dev wlan0 proto kernel scope link src 192.168.0.160 metric 600 local 10.89.75.240 dev wwan0 table local proto kernel scope host src 10.89.75.240 broadcast 10.89.75.255 dev wwan0 table local proto kernel scope link src 10.89.75.240 local 127.0.0.0/8 dev lo table local proto kernel scope host src 127.0.0.1 local 127.0.0.1 dev lo table local proto kernel scope host src 127.0.0.1 broadcast 127.255.255.255 dev lo table local proto kernel scope link src 127.0.0.1 local 192.168.0.160 dev wlan0 table local proto kernel scope host src 192.168.0.160 broadcast 192.168.0.255 dev wlan0 table local proto kernel scope link src 192.168.0.160 default dev wg0 table 51820 metric 1024 pref medium ::1 dev lo proto kernel metric 256 pref medium fe80::/64 dev wwan0 proto kernel metric 256 pref medium fe80::/64 dev wlan0 proto kernel metric 600 pref medium local ::1 dev lo table local proto kernel metric 0 pref medium local fe80::195a:6508:a760:e8f6 dev wwan0 table local proto kernel metric 0 pref medium local fe80::8856:ee35:a502:86fd dev wlan0 table local proto kernel metric 0 pref medium multicast ff00::/8 dev wlan0 table local proto kernel metric 256 pref medium multicast ff00::/8 dev wwan0 table local proto kernel metric 256 pref medium multicast ff00::/8 dev wg0 table local proto kernel metric 256 pref medium | Всего записей: 5 | Зарегистр. 15-02-2018 | Отправлено: 23:59 17-05-2024 | Исправлено: MKL81, 00:00 18-05-2024 |
|