Reaching Wireguard from a different subnet

Hi all!

I use a RB3011UiAS behind my providers router. I set the RB3011 as “exposed host” inside my providers router.
In my Mikrotik I use 2 Subnets:

  • LAN network 192.168.10.0/24
  • WIFI network 192.168.254.0/24 (mostly for IoT stuff)

The WIFI needs connection to the Internet but not the LAN (reject rule WIFI to LAN). That works.

Inside my LAN network I have a Wireguard Server 192.168.10.25 port 58000.
When my notebook is outside of my own network (at a clients WIFI, for example), everything works great.
I can connect to my Wireguard server and reach other servers inside my LAN.

Today I connected my notebook to my own WIFI, I can get into the Internet, but can’t reach my Wireguard server.

I’m sure it is something obvious but I can’t wrap my head around it.

Any help is appreciated!

I think its the current positions of the moon in relation to plutos distance to the sun/

In other words, WTF are we supposed to do with such little information.
At least
/export hide-sensitive file=anynameyouwish

a network diagram always helps as well.

Looking forward to helping with more info provided.