Spitz Wireguard server problem

Unable to access Wireguard server on new Spitz from Android. Good cloud seems to work. Tried turning off WG client, tried 2 SIMS.

Sat Feb 10 13:46:17 2024 daemon.notice netifd: Network device ‘wgserver’ link is down
Sat Feb 10 13:46:17 2024 user.notice mwan3[4398]: Execute ifdown event on interface wgserver (unknown)
Sat Feb 10 13:46:17 2024 daemon.notice netifd: Interface ‘wgserver’ is now down
Sat Feb 10 13:46:17 2024 user.notice firewall: Reloading firewall due to ifdown of wgserver ()
Sat Feb 10 13:46:23 2024 daemon.notice netifd: Interface ‘wgserver’ is setting up now
Sat Feb 10 13:46:23 2024 daemon.notice netifd: Interface ‘wgserver’ is now up
Sat Feb 10 13:46:23 2024 daemon.notice netifd: Network device ‘wgserver’ link is up
Sat Feb 10 13:46:23 2024 user.notice mwan3[5548]: Execute ifup event on interface wgserver (wgserver)
Sat Feb 10 13:46:23 2024 user.notice mwan3[5548]: Starting tracker on interface wgserver (wgserver)
Sat Feb 10 13:46:26 2024 user.notice firewall: Reloading firewall due to ifup of wgserver (wgserver)

Your Spitz is connected by 4G?

In that case, you will not be able to open ports, therefor VPN for incoming connections won’t work.
This is by design due to CG-NAT

So if you don’t have some high-class-enterprise mobile contract with static IP, you can’t use your Spitz as VPN server by 4G. You can try to use ZeroTier or Tailscale instead.

2 Likes

Yes by 4G and 5G, I didn’t know this was not possible. So only a SIM with static ip address is wireguard server possible! I’ll investigate the other 2 options you mentioned, thanks. I’ve been trying this for weeks now!

But those 2 options you mentioned say you shouldn’t use it with a Wireguard client at the same time, which is what I want to do…

Wireguard client works (at least with ZeroTier) fine at the same time.

1 Like

Thank you @admon, I’m now using Tailscale Android app to access the Spritz and I can view the local network devices, neat. And Wireguard client works great on the router.
But to use the internet on the android phone I have to disable custom DNS setting, dns.adguard.com, I imagine there’s a conflict with tailscale.
One last question, when connected to the Spritz with Tailscale, how do I get connected to the Wireguard client? At the moment I still get local SIM data ip address.