GL-MT3000 - Wireguard-VPN to my home-network don't work

Hi,

I have a problem setting up my GL-MT3000 with wireguard-vpn for travel-use.

The beryl has v4.8.1 firmware installed.

To test my VPN setup, I use my handy as hotspot. As wireguard-config I’m using exactly the same config as I tested successfull with my handy.

Unfortunatly I’m not able to activate a wireguard-VPN with this config in the beryl. In the dashboard I get the message that the tunnel is executed but the VPN-activation failed.

Logging says the following:

Sun May 3 15:10:31 2026 daemon.notice netifd: Interface 'wgclient1' is setting up now
Sun May 3 15:10:32 2026 daemon.warn dnsmasq[16019]: no servers found in /tmp/resolv.conf.d/resolv.conf.wgclient1, will retry
Sun May 3 15:10:32 2026 daemon.info dnsmasq[16019]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:10:32 2026 daemon.info dnsmasq[16017]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:11:42 2026 daemon.info dnsmasq[17791]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:11:42 2026 daemon.notice netifd: Interface 'wgclient1' is now down
Sun May 3 15:11:43 2026 user.notice firewall: Reloading firewall due to ifdown of wgclient1 ()
Sun May 3 15:13:40 2026 daemon.notice netifd: Interface 'wgclient1' is setting up now
Sun May 3 15:13:41 2026 daemon.warn dnsmasq[21009]: no servers found in /tmp/resolv.conf.d/resolv.conf.wgclient1, will retry
Sun May 3 15:13:41 2026 daemon.info dnsmasq[21009]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:13:41 2026 daemon.info dnsmasq[21008]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:14:38 2026 daemon.info dnsmasq[22666]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:14:38 2026 daemon.notice netifd: Interface 'wgclient1' is now down
Sun May 3 15:14:38 2026 user.notice firewall: Reloading firewall due to ifdown of wgclient1 ()
Sun May 3 15:15:58 2026 daemon.notice netifd: Interface 'wgclient1' is setting up now
Sun May 3 15:15:59 2026 daemon.info dnsmasq[25555]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:15:59 2026 daemon.warn dnsmasq[25556]: no servers found in /tmp/resolv.conf.d/resolv.conf.wgclient1, will retry
Sun May 3 15:15:59 2026 daemon.info dnsmasq[25556]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:16:41 2026 daemon.info dnsmasq[27119]: read /tmp/hosts/dhcp.wgclient1 - 3 addresses
Sun May 3 15:16:41 2026 daemon.notice netifd: Interface 'wgclient1' is now down

Any help or idea what to do or what I did wrong?

Thanks for support in advice!

Cheers

Hi

Is the MT3000 connected to the same network as the Handy (I assume you mean your phone)?

If not, please connect it to the same network and try again.

However, if it is already connected to the same network, could you please follow the guide and share your device with us via GoodCloud so we can check it remotely?

Kindly note to send us the MAC address and the router password via private message so we can access the device.

Hi,

thanks for your answer!

The MT3000 was connected via WLAN-Hotspot I provided on my mobile-phone. The mobile-phone was connected via 5G-cellular to the internet to simulate the VPN access from outside my home network.

The wireguard-connection to my home network did not work with the logs I quoted above.

When I use my mobile-phone via 5G-cellular (to simulate being outside of my home network) I can use the same wireguard config and get a connection to my home network without any problems. For this I use the wireguard-app on my mobile-phone.

For your access - will send you a PM - I let the VPN-config to my home network in the MT3000. Access to it is possible. I followed the documentation you linked.

But I need my cellphone and can’t let it be the whole day be the hotspot. So I started a new wifi-network in my home-network. This is used to let the MT3000 be permanently connected to the internet for your access. Failed wireguard-connection stays the same problem with this setup.

Thanks again for your help!

Solved my problem with the support. Excellent job!

They helped me to activate IPv6 additionally. And I needed to edit my WG-config. With my FritzBox I got this config in two ways: as QR-Code for my mobile-phone and old-school as config-download. With QR-Code the config includes a PSK that was not included in the “old-school”-config. So I had to edit the config in the MT3000 manually and add this PSK.

Last but not least the WG-VPN worked but I was not able to surf websites. That was a mistake by me. I had to edit the wg-config again manually and change the parameters of the allowed IPs to 0.0.0.0/0

Thanks once more to the support!