65. Chapter - Connection with AVM FRITZ!Boxes

Proceed as follows to set up a site-to-site connection with an AVM FRITZ!Box.

  1. Make sure that the preparatory steps have all been carried out as described in the 60. Chapter, „Preparing the configuration on the Intra2net system“.

  2. Check whether the AVM FRITZ!Box already has any other WireGuard VPN connection. To do this, open the menu "Internet > Permit Access > VPN (WireGuard)".

Depending on the result, continue with one of the following two sections.

65.1. AVM FRITZ!Box without previous connection

  1. Carry out the steps described in Section 64.1, „Remote site without own key“ on the Intra2net system.

  2. Open the menu "Internet > Permit Access > VPN (WireGuard)" on the AVM FRITZ!Box and click on "Add Connection".

  3. Select "Connect networks or establish special connections"

  4. Select "Yes" when asked whether the connection has already been established on the remote site.

  5. Give the connection a name and select the configuration file previously exported from the Intra2net system. Click on "Finish".

  6. The connection will be imported.

    It has been observed that this can sometimes lead to internal errors on the FRITZ!Box. In this case, repeat the import. If it still does not work after 2 attempts, restart the FRITZ!Box (menu "System > Backup > Restart").

  7. Display the WireGuard settings of the FRITZ!Box.

  8. The FRITZ!Box always automatically selects a random UDP port number for WireGuard when the first connection is created. Look it up under the item "ListenPort".

  9. On the Intra2net system, go to the menu "Services > VPN > Connections", select the connection to the FRITZ!Box and enter the port number read from the FRITZ!Box under "Remote port (UDP)".

In some cases, it was observed that the FRITZ!Box only activated a newly set up WireGuard connection after a restart, although it was shown in the connection list. In the event of connection problems, we therefore recommend restarting the FRITZ!Box (menu "System > Backup > Restart").

If the VPN connection is to be connected permanently, it is recommended to configure the connection so that it can be established from both sides. This increases stability and ensures that the connection is re-established more quickly in the event of an interruption.