Flint2 Setup WG Server & Client

Hi,

I’ve just got the FLINT2 but I am wondering how I can setup the WG Server & WG Client.
What I am wanting to achieve is to have all my local devices go through the FLINT2 WG Server/Client. My end goal was to add another layer of security by using the built-in WG Server capability.
I hope this is possible?

Here you go: Build your own WireGuard home server - GL.iNet Router Docs 4

(See the links on the left hand side for tutorials about paid VPN providers)

Thanks for the quick reply but I am not using two routers. I was under the impression that I could host the WG Server on the FLINT2 and then all local devices that connect to the same FLINT2 would be fed through the VPN Tunnel? Is this not how it works?

Is it even possible to have the WG Server & Client running onm the same router?
Similarily to how a PiVPN works, I thought by hosting my own VPN I could simply route all traffic through the Router/VPN.

It does not make sense to route via VPN inside the home network.
VPN is used for connecting two (or more) networks or to hide internet traffic.

Can you elaborate what your goal is and why?

I essentially want to add a futher layer to my security and I thought I would be able to achieve this with my own locally hosted VPN. Not to mask my IP or Location but to simply allow all traffic that goes to/from my local devices, into my router then is passed through a 'Router-Level VPN'. Can I not achieve this with the FLINT2?

A VPN is supposed to achieve acting like two or more different internetaccesses to be in one network. So you always have at least one VPN-Server and its clients. While the Server is sitting behind one Location and the clients are use another Internetacccess.

In this scenario OpenVPN, Wireguard and Tailscale ect. do their magic. At leat so far i understood it.

So it would make sense using Amnezia, NordVPN, Mullvad, Azire ect... when you go online thru the Flint to protect you privacy and take control about the location of your IP-Adress. In example you are US-Citizen but living in Asia, some Internetsites like CBN will not let you watch their Series, a VPN can give you a handshake to get over this Geo-Fences.

So one Flint without others Routers will maket it incredible easy to achieve that all your devices like phones, laptops or pc`s conected via Wifi or Lan are appear to be one device some where far away while you are online.

I think this is the "Layer of Security" you are thinking about when it is coming to VPN.

To make this work you can forget now about the SERVER-Function of the Router. You just need connect the Flint to one of those VPN´s offered under VPN-Clients.

After this all devices will run over the VPN if you wish so.

Passed through to where exactly?? If your router is the VPN server, then this is where the tunnelled VPN traffic ends.

My understanding was that I could use the WG Server & Client on the same device so all local traffic goes through my own VPN Server. FLINT2 website is a tad misleading as it says this for the VPN… * Tests conducted on a local network. Real world speeds may differ depending on your network configuration.

How have GL-iNet managed it as it reads to me that they tested it locally. All I want to do is route all my local devices through a VPN to add another layer of security.

If you simply think of a VPN as a tunnel with one end being the CLIENT and the other end being the SERVER, then you might be able to better understand the concept. There is nothing misleading here and both server and client can be executed on this router simultaneously but they would have two differing purposes (think about this as creating two different VPN tunnels pointing in different directions). If you could possibly poduce a simple diagram or a sketch of what you are trying to achive here as it still very vague when you say simply that you would want to add a layer of security.

Start the Wireguard-Server
export the configfiles to your devices
and import the configfiles into the wireguard-client software on your devices
connect

ready is the "VPN-Security-Layer"

but as admon told before... on a LAN only it doesent realy make much sense

it start to make sence if you take your Laptop to school or grandma.
You use the their Wifi-Hotspot or your Hotspot/Bluetooth from your phone...
and connect your Laptop as client to the Flint- Wireguardserver or OpenVPNserver into your homenetwork:
to switch on/off or check your Security-Cams, check the temps of the fishtank
or starting your drone from the balcony of your home remotly thru the LAN /Wifi of your homenetwork.

of course you can do the same via OpenVPN. But better read before start what you prefer and why.

Wireguard or OpneVPN ?