I purchased two routers to create a home site-to-site VPN (the networks must be visible to both devices, including connected devices such as NAS, hubs, etc.). Is it possible to set up a VPN in that way?
I've been trying for a few days, but I just can't seem to get it right; I'm having serious problems.
I have a static public IP, and the SIM card inserted into the Collie works fine.
Can you give me some advice/help?
More than anything, I'm starting to think it's impossible to set up a VPN this way.
You mentioned that the SIM card provides a static public IP, so I think the X300B/Collie will be hosted the VPN server.
You can first configure the VPN server on the X300B, WireGuard is recommended, export the VPN profile, enable "Allow Remote Access the LAN Subnet", and connect the LAN clients such as NAS to the LAN port.
Then import the above profile to MT2500/Brume2, and enable VPN client to connect to X300B.
If the MT2500 VPN connection is abnormal, you can test this profile on your phone first to see if it can connect to the X300B VPN server.
Home Zone
GL.iNet MT2500A (Brume 2) as a server connected to the home zone router
Static public IP
IP class 192.168.0.XXX
A switch to which various devices are connected
Garage Zone
GL-X300B (Collie) as a client set to DHCP
Working data SIM card
IP class 192.168.10.xxx
A switch to which various devices are connected
I configured both the Brume and the Collie, and the VPN works, but not bidirectionally:
From the garage zone PC, I can correctly see the home zone network, including the connected devices (I can correctly see the Brume with its IP 192.168.0.XXX, NAS, printer, router, etc.).
My problem is that I want the garage zone devices to be visible from the home zone, but I can't do this.
For example, from my home computer, I can't see the collie in the basement with its IP address of 192.168.10.XXX, nor any devices connected to that network.
Is it possible to configure a VPN this way, or is it just a waste of time?
On MT2500, manually create a new route, Target Address is the X300B LAN subnet, like 192.168.10.0/24; Gateway is the X300B WG tunnel interface IP, like 10.0.0.2: