Zerotier setup for full tunnel mode issu - no connection


following guide, i am pretty sure what zerotier was installed and configured correctly.

LAN and home network connections works fine, but any connection to Internet are broken from devices inside zerotier lan.

Current setup is:
Zerotier account, gateway firewall and client configuration:

Gateway configuration:

  • OrangePi with Armbian 23 Bullseye
  • ip route:
default via dev eth0 proto dhcp metric 100 dev ztfp6azmws scope link metric 1000 dev eth0 proto kernel scope link src metric 100 dev ztfp6azmws proto kernel scope link src
  • Iptables output:
Chain INPUT (policy ACCEPT)
target     prot opt source               destination

Chain FORWARD (policy DROP)
target     prot opt source               destination
ACCEPT     all  --     anywhere
ACCEPT     all  --  anywhere   
  • iptables config:
-A POSTROUTING -o eth0 -s -j SNAT --to-source <XXX.XXX.XXX.XXX external IP>
-A FORWARD -i ztfp6azm -s -d -j ACCEPT
-A FORWARD -i eth0 -s -d -j ACCEPT
  • port forwarding output (cat /proc/sys/net/ipv4/ip_forward) : 1

From 192.168.200.XXX to 192.168.1.XXX everything works (access to samba and other local resources).

And connection does not work to internet from 192.168.200.XXX via (same thing from windows pc, from android phone).

I do not understand why this thing does not work

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.