Best way to set up Brume 2 as Wireguard Server

In order for a Brume 2 to work behind a router, should I plug it in on the WAN port, right? Then port forward 51820.

Want to replace my raspberry Pi 4 with a Brume 2 for the same purpose: Set a Wireguard server on my home and be able to access resources (and tunnel my connection through my home IP)

The Pi has one port, so it was straightforward. Are these the right steps to set it up?

  1. Connect Brume 2 WAN port to router
  2. Connect a PC to the LAN port for configuration (wish I could avoid this)
    2.1) Go to admin page and activate WG Server, goodcloud access, obtain .conf profiles for clients.
    2.2) Open port 80 on Brume 2 firewall to access admin portal within my LAN (using my router’s assigned IP for Brume)
    2.3) Disconnect PC from LAN.
  3. Port forward 51820 on my router >> Brume 2

Is that about it? Will this setup allow Brume 2 to access the rest of my LAN while a WG Client is connected to it?

Thanks!

I have done this on other GL iNet routers running 3.x firmware but not on a Brume 2. It looks like you have most of the steps correct, but I did not use Goodcloud, as I find Goodcloud to be an un-necessary security risk, as GL iNet has reported they have suffered a hacking attack on this service. Along with port 80, you probably want to open up port 22 so you can ssh into the router.

I’m not sure with the 4.x firmware if the firewall will give you LAN access, of if you will have to play with the firewall rules to permit this.

1 Like

Hi Eric, do you know how to setup Brume 2 after the cable modem as a VPN then to router wifi. Do I setup the router as gateway not AP? Also is the brume 2 benchmark even fast enough for someone with 400/mb? thanks

Sorry, I have never used a Brume 2. If the Brume 2 is going to be your main router that is connected to your cable modem, I would setup your WIFI router as an AP so you don't end up with a double NAT, and have the Brume 2 do your routing, VPN, firewall, DNS and DHCP functions.

No idea on the performance, but I'm sure Brume 2 users could let you know.

As this is a two year old post, you may just want to make a new post if you don't see any other replies.

Brume 2 will hit the wall very easily if you run all those services. CPU can only do 355Mbps on Wireguard. If you want something with more CPU cores and faster WireGuard, you'll have to look at another router.

I'm using a Brume 2 as my main and only router. ISP cablemodem in bridge mode provides public IP to the brume. LAN port is connected to a PoE switch which feeds 3 TP-Link EAP660HD AP's. (using Omada Controller).

That PoE is also connected to a regular unmanaged switch, where ethernet cables go each room + wired devices.

DHCP, DNS (AdGuard Home) and WireGuard VPN services are provided by the Brume 2

Last time I checked WG speeds with iperf was getting 200mbps on a 500mbps link from North America to South America. Only one user connected though.

1 Like

Its far slower then advertised speed of WireGuard on Brume 2. Thats not good at all.

OK Thanks Guys, I ended up just buying the Flint 2 (GL-MT6000) Wi-Fi 6 High-Performance Home Router by [GL.iNet] Black Friday deal today Save 35%
Original price $189.00
Current price $122.85 I hope it's faster. I'll post after I get it. Thanks again.

1 Like

To be fair, I don't blame it all to the Brume 2 itself, likely speeds would be better if tested locally, instead from across the globe.

Advertised speeds are under ideal conditions though.

1 Like