


ip firewall nat add action=src-nat chain=srcnat out-interface=wg.vpn to-addresses=10.68.21.55Ĥ. Add src-nat rule so that clients behind the router can communicate with the internet (10.68.21.55 is the private vpn ip address the provider assigned to me masq instead of src-nat should also work) Replace default gateway, so that everything is routed via the wireguard interface by default (renamed wireguard1 interface to wg.vpn) Add Hostroute to the selected wireguard vpn server (in my case 185.209.196.70 192.168.99.1 is my default LAN gateway) All required information are in the generated config file on mullvad’s ‘My account’ page. For everyone interested, just follow the steps for Router 1 configuration in the article. All Clients on my lan now use vpn for internet browsing.
