Nick555
New Member
- Joined
- Aug 11, 2026
- Messages
- 2
- Reaction score
- 1
Hi all
I’m experiencing an issue with inbound WireGuard VPN connectivity and would like to check whether this could be related to Afrihost network behavior.
I’m experiencing an issue with inbound WireGuard VPN connectivity and would like to check whether this could be related to Afrihost network behavior.
Setup
- Router: Cudy M3000 running WireGuard server
- Port forwarding configured (UDP)
- DDNS hostname (DuckDNS) resolving correctly
- VPN subnet: 10.10.0.0/24
- LAN subnet: 10.0.0.0/24
What works
- VPN connections from mobile data (LTE) establish successfully
- Connections from a different ISP also work correctly
- Traffic routes as expected once connected
The issue
- When a client on a different network but also using Afrihost attempts to connect:
- Connection fails or times out
- No WireGuard handshake is established
Additional context
- This setup previously worked without issue, including connections from other Afrihost clients
- The problem appears to be a recent change and is now only affecting connections where the client is also on Afrihost
Observations
- Client and server have different public IP addresses
- DNS resolution is correct and points to the public IP
- Port forwarding is confirmed working via external testing
- The issue appears specific to traffic originating from within the Afrihost network
Query
- Could CGNAT or internal routing policies be affecting this, and is there a way to resolve it as this appears to be caused by a recent change?