Thank you so much for your video! Been searching for how to setup VPN Client side but no luck. Finally got this video and successfully setup my router. Appreciated your work! Great videos tutorial!
Thannk you so much for this video!! Spent all afternoon reading thru forums on how to set this up and could not get it to work. Your video is precise and to the point. Well Done!!
Thank you very much!!! It's a very good and simple guide to setup OpenWRT as a Wireguard client. I have changed something (assigned the wg interface to LAN firewall zone, as I trust the remote network I'm connecting to), and needed further configuration in remote LAN to enable some special accesses. Great work!
Tqvm for the video guide. Already use the wireguard after watching this. It is very lite and fast! . Before this I'm using ovpn in router. Different result when using wireguard. I really love wireguard!
Great to hear! I has been using OpenVPN for a long time before I switch to Wireguard. The performance is way more better then OpenVPN and it requires less processing power then OpenVPN does.
how do you setup wireguard client so only couple of devices on your network use VPN based route to internet and all other devices access internet without it?
why was the speed 200 MB on the computer when I started the vpn connection, and when I installed it on the router, the speed on the same PC dropped to 20 MB? It's the same on Wi-Fi, from 60 to 15 MB
Can someone please explain why a simple port forward/traffic rule can't be done to let wireguard do it's job? Having additional software just to let vpn traffic through is seemingly excessive.
following the instructions i got the ip addres to chagne but the traffic still doesn't look like it's going trhough the wireguard server since the blocked websites remain blocked. any ideas?
can you provide a video how to use a 2G/5G wifi router running openwrt with wireguard. I want to only have the 5G Wi-fi to use the VPN, all the time... the router lan and 2G will use the WAN. I've been struggling to get anything to work.
great tutorial very simple. but how do I route some some of the apps without the wireguard? for example I would like all of my traffic go through wireguard but steam client and videogames to connect directly without vpn.
Hi Van, I am a bit confused. I am looking for a setup, where my wireguard will act as a server, and then other people can connect with my openwrt device wireguard server. How to do that? anyidea?
Absolutely brilliant video! Thank you ! I did do the setup with my GL-MT1300 and it works great. How do I make it persistent that it automatically connects every time when I reboot the router?
I believe he's using an old version of wireguard. You have to get your keys from the server you're connecting to (he's setting up just the client here).
Hi Van Tech Corner, Is this setup ideal for if I want to access my RDP from outside network via this WG Client setup on OpenWRT? Also the Wineguard for Windows 10 is that a server or client app? Thanks in advance.
Hi, this is wireguard client, in which your device/router is going to connected to a Wireguard VPN server. If you want to remote access your PC and manage other devices at home while outside, you will need to setup a Wireguard VPN server on your router (there is a video about this). And then, use your phone or laptop as a Wireguard client to connect to the server. At this time, you will be able to reach your LAN.
is it possible to have rules set so that only some dhcp clients get their traffic passed through the wireguard interface and everyone else stays on the standard wan?
Yes, you can configure it in the "Allowed IP" and fill in the IP/subnet which should go out from the wireguard interface, instead of 0.0.0.0/0, like what I did at 06:03
@@VanTechCorner thank you very much for your reply, im gonna test it now in a 3 VMs ive setup to see if i can get it to work. EDIT: So I've just tested it, and turns out that method does not work. It seems that "Allowed IPs" is actually Destination IPs that the wg interface should accept, not source IPs (stackoverflow.com/questions/65444747/what-is-the-difference-between-endpoint-and-allowedips-fields-in-wireguard-confi) I did however find a package on opkg called "vpn-policy-routing" which does exactly what I need. Hopefully this comment helps anyone else who might be trying to do the same thing.
Hi Van Tech Corner, firstly thank you making for the video, I was wondering if you could make a variation of this install. I have a PI (3B) and I've installed the default OpenWRT image, the variation would be using the PI's wifi as the Lan (Access Point) and the Ethernet as the WAN, with a wireguard client connection routing from Wifi (connected users) to WAN. I've not been able to get my head round figuring out how to make the routing work on such a setup, compared to your version which is using a dual ethernet device. Many thanks (in the meantime I continue to crawl the endless net for a solution)
Hi, do you have a USB UART cable? I see it is very easy to get the job done. After the fresh install, if it is snapshot version then you can check out my video about "Install Luci snapshot firmware" to do that. With Luci installed, connect to it via the LAN port and setup your Wifi (in LAN) as well. Finally connect to Wifi and change the eth0 from LAN interface to WAN. You can find sort of tutorials in this playlist ruclips.net/p/PL58__w3t_eTbcBQ9oJ8jXCxPtBiac59vC
@@VanTechCorner Really great video, appreciate all your tutorials. I am stuck at a similar position. I am routing internet via the Pi4's ethernet port via wifi access point and trying to route the traffic via Wireguard VPN. Basically, having difficulty changing eth0 from LAN interface to WAN. Every time I try, my raspberry pi reverts back to previous settings. Would really need your guidance on this.
Hi Sir. I am wondering what is wrong with my Wireguard config. Config file can run on phone but Cannot run on MI4A openwrt router and PC wireguard apps too. Appreciate if you can help me on this problem.
It will work according to your configuration. If you want only a specific LAN port to be routed via wireguard, you can install mwan3. Or else, you can route a specific IP address through Wireguard by enter the IP in "Allowed IP".
Glad you like the video. There are other OpenWRT tutorials, including Wireguard server, OpenVPN site to site on the channel page. Don't forget to check it out!
hey how's it going?? your video was of great help, I would like you to help me with a problem that I cannot solve, I am using a GL-MT250 router as a WIREGUARD server, and as a WIREGUARD CLIENT I am using a TPLINK router with OPENWRT firmware, I managed to connect perfectly with the vpn but from the client side I can access the LAN from the server side, but from the server I can not access the LAN from the client side, how do I solve this problem?? thanks
Thank you, I imitated this video and set it up, but it didn't work in my environment. (Packet communication volume 0) GL-MT300N-v2 The server side is a machine with a direct global IP address. I don't want to do this because if I allow 0.0.0.0/0 on the wireguard server side, net services such as RDP will hang. By the way, the client side is beyond the isp modem and router. It is GL-MT300N-v2. I want to solve it somehow. Please give me some advice!
Chào Van Tech Corner, hy vọng ADM làm một bài về cách phân luồng IP qua Wireguard ( chỉ đi qua Wireguard khi truy cập các web ngoài VN, còn trong VN vẫn sử dụng ISP VN ạ). Cám ơn Van Tech Corner.
Trong Wireguard trên LuCI có phần "Allowed IP", bạn chỉ việc nhập địa chỉ IP hoặc subnet muốn đi qua Wireguard (thay vì để 0.0.0.0/0) và tick chọn "Route Allowed IP" là được. Nếu muốn cấu hình cao hơn, bạn có thể tìm hiểu VPN Policy Routing hoặc mwan3.
Hi, only MR6400 is supported by OpenWRT. If you have a MR6400 hardware ver 1, you can try with ruclips.net/video/ZDSvF9eSOwI/видео.html&ab_channel=VanTechCorner
Maybe in the feature. Basically you just need to create a new interface, fill in the peer info and that is. For WG server, I have another tutorial on how to setup a WG server and you can check out that video for further information.
The core package is wireguard and it is not included in luci-app-wireguard's dependencies. You can check out the dependencies here openwrt.org/packages/pkgdata/luci-app-wireguard.
@@VanTechCorner The wireguard package is a "meta-package" that actually tells the system to install the dependencies for this service. The packages that are actually the service itself are kmod-wireguard and wireguard-tools, which do not install the LuCI interface. To be able to use it in LuCI, by installing luci-app-wireguard and even installing the translation only in your language, for example "luci-i18n-wireguard-en" you already install everything else to be able to use it. Try it on a fresh installation.
ANYONE WATCHING IN 2025 ..... READ BELOW!‼‼‼‼‼‼‼‼ in openwrt install luci-proto-wireguard in software and restart make interface using wireguard protocol use the .CONF from your wireguard server in firewall settings add wan save, save and apply, reboot if you have any issues with internet just stop wireguard and restart the lan / wan / wan6 than restart wireguard ( i got some strange issues with that ) test conf with another device before messing with openwrt 😊😊
Thank you for the tutorial...it was easy and straight forward. Just want to asked, if you could do wireguard with mwan3 tutorial. Very happy if you could help with making the video. Thank you.
Hi, thanks for your comment. I have yet to try mwan3 with wireguard/openvpn. However, I do have a tutorial for mwan3 load balancing & failover mode, you can check this video out and give a try.
Thank you so much for your video! Been searching for how to setup VPN Client side but no luck. Finally got this video and successfully setup my router. Appreciated your work! Great videos tutorial!
Hi,
When I am at 4:07, my panel has Private and Public key to input. Any ideas?
Thannk you so much for this video!! Spent all afternoon reading thru forums on how to set this up and could not get it to work. Your video is precise and to the point. Well Done!!
You're welcome! Glad it helped.
谢谢你,虽然听不懂你说的话,但看你操作已经明白了,谢谢你!
谢谢你,我也会一点中文。有时间我会做 中文的字幕。
Thank you very much!!! It's a very good and simple guide to setup OpenWRT as a Wireguard client. I have changed something (assigned the wg interface to LAN firewall zone, as I trust the remote network I'm connecting to), and needed further configuration in remote LAN to enable some special accesses. Great work!
Hi, I'm wondering where did u get the private key from on 4:09?
Perfect tutorial! Thank you very much for that!
Glad it was helpful!
great tutorial mate, waiting for the next video
Thank you! More to come!
pakiu mate, pakiu. u a ebeliwe
Tqvm for the video guide. Already use the wireguard after watching this. It is very lite and fast! . Before this I'm using ovpn in router. Different result when using wireguard. I really love wireguard!
Great to hear! I has been using OpenVPN for a long time before I switch to Wireguard. The performance is way more better then OpenVPN and it requires less processing power then OpenVPN does.
Hi, I dont see wirguard on the list, how can I do?
how do you setup wireguard client so only couple of devices on your network use VPN based route to internet and all other devices access internet without it?
Yes, need an example of routing only a vlan through the VPN
why was the speed 200 MB on the computer when I started the vpn connection, and when I installed it on the router, the speed on the same PC dropped to 20 MB? It's the same on Wi-Fi, from 60 to 15 MB
Thank you, your guide worked.
Video hướng dẫn về Openwrt của bạn rất hay. Tôi luôn chờ xem
Can someone please explain why a simple port forward/traffic rule can't be done to let wireguard do it's job? Having additional software just to let vpn traffic through is seemingly excessive.
following the instructions i got the ip addres to chagne but the traffic still doesn't look like it's going trhough the wireguard server since the blocked websites remain blocked. any ideas?
can you provide a video how to use a 2G/5G wifi router running openwrt with wireguard. I want to only have the 5G Wi-fi to use the VPN, all the time... the router lan and 2G will use the WAN. I've been struggling to get anything to work.
Thanks so much ,this is my request
Hope you like it!
great tutorial very simple.
but how do I route some some of the apps without the wireguard?
for example I would like all of my traffic go through wireguard but steam client and videogames to connect directly without vpn.
VPN routing policies
ruclips.net/video/YEHDf8-nZyA/видео.html
AllowedIPs edits
Ipv6 warp wireguard not working :/ only ipv4😢
guest lan lost connection with wireguard, can you help me with that ? :)
Hi Van, I am a bit confused. I am looking for a setup, where my wireguard will act as a server, and then other people can connect with my openwrt device wireguard server. How to do that? anyidea?
Hi, there is a video about wireguard VPN server, you can combine this video with "openwrt ddns (dynamic domain)" and it should get the thing done.
find what to get right interface, I can not find, can help me
Absolutely brilliant video! Thank you !
I did do the setup with my GL-MT1300 and it works great.
How do I make it persistent that it automatically connects every time when I reboot the router?
Hi, the Wireguard interface should auto start with the system by default, unless you uncheck the "bring up on boot".
The main thing is where we can find the info you used to setup wireguard....how to make public and presheard key
I believe he's using an old version of wireguard. You have to get your keys from the server you're connecting to (he's setting up just the client here).
Hi Van Tech Corner,
Is this setup ideal for if I want to access my RDP from outside network via this WG Client setup on OpenWRT?
Also the Wineguard for Windows 10 is that a server or client app?
Thanks in advance.
Hi, this is wireguard client, in which your device/router is going to connected to a Wireguard VPN server. If you want to remote access your PC and manage other devices at home while outside, you will need to setup a Wireguard VPN server on your router (there is a video about this). And then, use your phone or laptop as a Wireguard client to connect to the server. At this time, you will be able to reach your LAN.
Can i set it up to include a kill switch so that no traffic goes through if Wireguard interface goes down?
Hey, sorry for the late response. You can do this, here is the guide openwrt.org/docs/guide-user/services/vpn/wireguard/extras#kill_switch
is it possible to have rules set so that only some dhcp clients get their traffic passed through the wireguard interface and everyone else stays on the standard wan?
Yes, you can configure it in the "Allowed IP" and fill in the IP/subnet which should go out from the wireguard interface, instead of 0.0.0.0/0, like what I did at 06:03
@@VanTechCorner thank you very much for your reply, im gonna test it now in a 3 VMs ive setup to see if i can get it to work.
EDIT: So I've just tested it, and turns out that method does not work. It seems that "Allowed IPs" is actually Destination IPs that the wg interface should accept, not source IPs (stackoverflow.com/questions/65444747/what-is-the-difference-between-endpoint-and-allowedips-fields-in-wireguard-confi) I did however find a package on opkg called "vpn-policy-routing" which does exactly what I need. Hopefully this comment helps anyone else who might be trying to do the same thing.
Hi Van Tech Corner, firstly thank you making for the video, I was wondering if you could make a variation of this install.
I have a PI (3B) and I've installed the default OpenWRT image, the variation would be using the PI's wifi as the Lan (Access Point) and the Ethernet as the WAN, with a wireguard client connection routing from Wifi (connected users) to WAN. I've not been able to get my head round figuring out how to make the routing work on such a setup, compared to your version which is using a dual ethernet device. Many thanks (in the meantime I continue to crawl the endless net for a solution)
Hi, do you have a USB UART cable? I see it is very easy to get the job done. After the fresh install, if it is snapshot version then you can check out my video about "Install Luci snapshot firmware" to do that. With Luci installed, connect to it via the LAN port and setup your Wifi (in LAN) as well. Finally connect to Wifi and change the eth0 from LAN interface to WAN. You can find sort of tutorials in this playlist ruclips.net/p/PL58__w3t_eTbcBQ9oJ8jXCxPtBiac59vC
@@VanTechCorner Really great video, appreciate all your tutorials. I am stuck at a similar position. I am routing internet via the Pi4's ethernet port via wifi access point and trying to route the traffic via Wireguard VPN. Basically, having difficulty changing eth0 from LAN interface to WAN. Every time I try, my raspberry pi reverts back to previous settings. Would really need your guidance on this.
Hi Sir. I am wondering what is wrong with my Wireguard config. Config file can run on phone but Cannot run on MI4A openwrt router and PC wireguard apps too. Appreciate if you can help me on this problem.
Hi, can you provide more information. What is the error message on the wireguard interface? is there any status on the Wireguard status page on LuCI?
can you make the wireguard only connect to a lan port or does it apply to the whole router?
It will work according to your configuration. If you want only a specific LAN port to be routed via wireguard, you can install mwan3. Or else, you can route a specific IP address through Wireguard by enter the IP in "Allowed IP".
@@VanTechCorner What happens to the allowed ip's internet access if the VPN connection drops? does it go through wan or will it have no internet.
@@UzairFarooqui I'm guessing no Internet since the interface will be correct, the issue is your VPN server
Just want to say thank you.
Glad you like the video. There are other OpenWRT tutorials, including Wireguard server, OpenVPN site to site on the channel page. Don't forget to check it out!
hey how's it going?? your video was of great help, I would like you to help me with a problem that I cannot solve, I am using a GL-MT250 router as a WIREGUARD server, and as a WIREGUARD CLIENT I am using a TPLINK router with OPENWRT firmware, I managed to connect perfectly with the vpn but from the client side I can access the LAN from the server side, but from the server I can not access the LAN from the client side, how do I solve this problem?? thanks
hôm nào nhờ cậu làm cái hướng dẫn OpenWRT chạy IPsec IKEv2 Dial-out với con Draytek làm Dial-in ah
Thank you, I imitated this video and set it up, but it didn't work in my environment. (Packet communication volume 0) GL-MT300N-v2 The server side is a machine with a direct global IP address. I don't want to do this because if I allow 0.0.0.0/0 on the wireguard server side, net services such as RDP will hang. By the way, the client side is beyond the isp modem and router. It is GL-MT300N-v2. I want to solve it somehow. Please give me some advice!
Hi, sorry for the late response. Did you manage to get it fix or the problem is still on going?
Is this can be configured on any router as long as it is running openwrt?
Yes, any OpenWRT as long as it is running OpenWRT.
tq and terbaikkkk boh...
Perfect. Thank you
Glad it helped!
Thank you good sir!
how did you get configuration files? like public and private key
You should get it from the VPN provider or you it should be generated by you when creating the Wireguard server.
@@VanTechCorner thnx, how can i generate one ?
Please see my tutorial on how to setup wireguard server, you will find the instruction there.
Where to change dns
can u make a tutorial to install and configure v2ray in luci openwrt?
Hi, there is a detail tutorial here, you can try and update if there is any problem github.com/kuoruan/openwrt-v2ray
Thank you :)
thank you for the informative video sir! please excuse my knowledge but may I please know the benefits of having a vpn in your router?
Chào
Van Tech Corner, hy vọng ADM làm một bài về cách phân luồng IP qua Wireguard ( chỉ đi qua Wireguard khi truy cập các web ngoài VN, còn trong VN vẫn sử dụng ISP VN ạ). Cám ơn Van Tech Corner.
Trong Wireguard trên LuCI có phần "Allowed IP", bạn chỉ việc nhập địa chỉ IP hoặc subnet muốn đi qua Wireguard (thay vì để 0.0.0.0/0) và tick chọn "Route Allowed IP" là được. Nếu muốn cấu hình cao hơn, bạn có thể tìm hiểu VPN Policy Routing hoặc mwan3.
Can i instal tp link mr100 router
Hi, only MR6400 is supported by OpenWRT. If you have a MR6400 hardware ver 1, you can try with ruclips.net/video/ZDSvF9eSOwI/видео.html&ab_channel=VanTechCorner
Can you create a video with multiple peers please, thank you :)
And for the endpoint, you say something like this will be your WR server, what is that, thank you :)
Maybe in the feature. Basically you just need to create a new interface, fill in the peer info and that is. For WG server, I have another tutorial on how to setup a WG server and you can check out that video for further information.
amazing!
I would pay money for your Patreon if you had one for this video
You can make video about Fast roaming on Openwrt.
Hi, I will take a look on this. Thanks for the feedback!
Con instalar luci-app-wireguard ya es suficiente, ya que instala todas las dependencias.
The core package is wireguard and it is not included in luci-app-wireguard's dependencies. You can check out the dependencies here openwrt.org/packages/pkgdata/luci-app-wireguard.
@@VanTechCorner The wireguard package is a "meta-package" that actually tells the system to install the dependencies for this service. The packages that are actually the service itself are kmod-wireguard and wireguard-tools, which do not install the LuCI interface. To be able to use it in LuCI, by installing luci-app-wireguard and even installing the translation only in your language, for example "luci-i18n-wireguard-en" you already install everything else to be able to use it. Try it on a fresh installation.
ANYONE WATCHING IN 2025 ..... READ BELOW!‼‼‼‼‼‼‼‼
in openwrt install luci-proto-wireguard in software and restart
make interface using wireguard protocol
use the .CONF from your wireguard server
in firewall settings add wan
save, save and apply, reboot
if you have any issues with internet just stop wireguard and restart the lan / wan / wan6 than restart wireguard ( i got some strange issues with that )
test conf with another device before messing with openwrt 😊😊
Thank you for the tutorial...it was easy and straight forward.
Just want to asked, if you could do wireguard with mwan3 tutorial.
Very happy if you could help with making the video.
Thank you.
Hi, thanks for your comment. I have yet to try mwan3 with wireguard/openvpn. However, I do have a tutorial for mwan3 load balancing & failover mode, you can check this video out and give a try.