Devices Connected to Wireguard Server automatically get VPN Client when its not configured under Policies

Hi,

I am having issue with VPN Cascading.

My setup:

I have VPN client setup with MAC addresses where only few devices are behind VPN.

Device A
Device B
Device C

I also have Wiregaurd server running and I have Device D connected to that wireguard server without any issues and I can see my Public IP.

But when I enable VPN Cascading the Device D automatically goes behind VPN Client which I don't want to and not in the MAC address list.

Could you guide what I am doing wrong here?

Thanks

MAC works only inside a network. As soon as some network package crosses the border of a router, the MAC will be deleted from the package. So you won't be able to reference a MAC address of a device that's connected by another WireGuard server.

Thanks @admon
I believe there is no way I can prevent the device from not using VPN client?

You could exclude the whole WireGuard server.

That means the Device D will not be able to communicate to the home network?

Depends on where the wg server is running?
Just give it a try. I don't know the exact topology of your network.

Apologies, I didnt explain it properly.

I have Client and Server both on the same Gl inet router. So turning off maybe not going to work or solution as this will turn off the server and Device D will not be able to communicate at all back.

Apologies for pinging but anyone can chip in and help out. Unless I need to request this a feature request?

Thanks