Sponsored Links

Sptiz AX (GL-X3000) on Three. No 5G.

its behind my home router (opnsense) yes. i can give it a try direct to the internet i guess.

currently

opnsense router -> switch -> beryl ax -> wired laptop.

no specific firewall rules to stop it working, no wireguard running on the opnsense right now. i can swap the vlan the beryl ax switch port is on to 5G and then it would be direct to the 5G router.
 
gave it a vlan with direct (bridge mode) to the 5G router, still same. i have to figure out how to do a packet capture in openwrt now i guess.
 
gave it a vlan with direct (bridge mode) to the 5G router, still same. i have to figure out how to do a packet capture in openwrt now i guess.
The problem doesn't seem to be sufficiently low-level to require packet capture.

Assuming the first and most relevant errors were identified, resolving the below should help. For example, a later line suggests a hostname was not resolved and that could be a result of an earlier error. From memory, wireguard connections can be tested with one or a few lines.

If packet capture is a reasonable way to go, simple uses of tcpdump can often give good clues.

Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): * Running script '/var/etc/gls2s.include'
Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): ! Skipping due to path error: No such file or directory
Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): * Running script '/usr/bin/gl_block.sh'
Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): Failed to parse json data: unexpected character
Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): uci: Entry not found
Tue Apr 16 13:13:49 2024 daemon.notice netifd: wgclient (11001): cat: can't open '/tmp/run/wg_resolved_ip': No such file or directory
Tue Apr 16 13:13:49 2024 daemon.notice netifd: Interface 'wgclient' is now down
 
The problem doesn't seem to be sufficiently low-level to require packet capture.

Assuming the first and most relevant errors were identified, resolving the below should help. For example, a later line suggests a hostname was not resolved and that could be a result of an earlier error. From memory, wireguard connections can be tested with one or a few lines.

If packet capture is a reasonable way to go, simple uses of tcpdump can often give good clues.
yeah im pretty well versed in tcpdump/wireshark etc. it just didn't seem to be available either pre installed or with opkg install <package>
if you run a packet capture on opnsense, you would see if the request is getting out.
yep. will have a crack at it later/tomorrow. spent ages playing with it today and dont want to look at it right now
 
yeah im pretty well versed in tcpdump/wireshark etc. it just didn't seem to be available either pre installed or with opkg install <package>
Was "opkg update" done? I think packages "tcpdump" and "tcpdump-mini" should be seen for many versions. Wireshark may not be required given the reported symptoms.
 
Sponsored Links
@dabigm I see someone has replied to you over on the gl.inet forums.
I've got a new Brume 2 here if you want me to configure it as a Wireguard server and send you a Wireguard client .conf so you can test a different server for your Beryl.
 
I've solved it.

somehow the router and my phone have the same assigned IP.
i used a script that gets the last peer IP in wg0.conf and increments it.
somehow ?! (still don't understand) it gave two of them the same IP.
but only in the client config and not in the wg0 config.

I guess this is a lesson to not just blindly trust internet scripts.
 
I use pivpn for wireguard and openvpn
I'll check that out. Thanks. Can't believe it was something so simple. But i'm still scratching my head how it made the server config correct but two identical addresses in the client configs. And one key (my laptop key) the public key doesn't match at all. So I don't know where that one has come from.

It was also a case of "well, works on my phone therefore the other keys should work too" which obviously wasn't the case.

I need to make a much more robust setup for this in future. I use an ansible playbook to setup my VPS so I just run that once and everything gets set up. About to rip out the wireguard parts now as they obviously don't work properly.

God I wasted too much time on this.
 
Sponsored Links
Top
Cheap BIG ISPs for 100Mbps+
Community Fibre UK ISP Logo
150Mbps
Gift: None
Virgin Media UK ISP Logo
Virgin Media £22.99
132Mbps
Gift: None
Vodafone UK ISP Logo
Vodafone £24.00 - 26.00
150Mbps
Gift: None
NOW UK ISP Logo
NOW £24.00
100Mbps
Gift: None
Plusnet UK ISP Logo
Plusnet £25.99
145Mbps
Gift: £50 Reward Card
Large Availability | View All
Cheapest ISPs for 100Mbps+
Gigaclear UK ISP Logo
Gigaclear £17.00
200Mbps
Gift: None
Community Fibre UK ISP Logo
150Mbps
Gift: None
Virgin Media UK ISP Logo
Virgin Media £22.99
132Mbps
Gift: None
Hey! Broadband UK ISP Logo
150Mbps
Gift: None
Youfibre UK ISP Logo
Youfibre £23.99
150Mbps
Gift: None
Large Availability | View All
Sponsored Links
The Top 15 Category Tags
  1. FTTP (6024)
  2. BT (3639)
  3. Politics (2720)
  4. Business (2439)
  5. Openreach (2405)
  6. Building Digital UK (2330)
  7. Mobile Broadband (2144)
  8. FTTC (2083)
  9. Statistics (1899)
  10. 4G (1814)
  11. Virgin Media (1763)
  12. Ofcom Regulation (1582)
  13. Fibre Optic (1467)
  14. Wireless Internet (1462)
  15. 5G (1405)
Sponsored

Copyright © 1999 to Present - ISPreview.co.uk - All Rights Reserved - Terms  ,  Privacy and Cookie Policy  ,  Links  ,  Website Rules