OK, thanks for clarification. I do have access to the internal LAN working fine. But it doesn’t seem like I am being allowed to use FusionHub as a gateway for the LAN to the internet (I think it is working fine for any local to remote LAN connections through the tunnel though.
In below traceroute, fusionhub is 172.16.25.195 and I am trying to ping google DNS from another device on the LAN…
root@mail:/etc/netplan# traceroute 22.214.171.124
traceroute to 126.96.36.199 (188.8.131.52), 30 hops max, 60 byte packets
1 _gateway (172.16.25.195) 0.265 ms 0.215 ms 0.189 ms
2 * * *
3 * * *
4 * * *
5 * * *
But I am able to see the remote side PeplinkMAX device…
traceroute to 192.168.100.1 (192.168.100.1), 30 hops max, 60 byte packets
1 _gateway (172.16.25.195) 0.254 ms 0.176 ms 0.113 ms
2 192.168.100.1 (192.168.100.1) 108.365 ms 112.885 ms 112.855 ms
I enabled a firewall rule so I could get some logging and there are many items like this, which appears to be the ping going out? So the problem may be that it doesn’t go any further or is not able to come back?
Sep 08 12:50:47 fsh-XXX Firewall: Allowed IN=br0 OUT=eth0 MAC=00:50:56:90:1e:e2:00:50:56:a4:46:88:08:00 SRC=172.16.25.199 DST=184.108.40.206 LEN=74 TOS=0x00 PREC=0x00 TTL=63 ID=12320 DF PROTO=UDP SPT=54412 DPT=53 LEN=54