Горното от Вас проба ли го ?
Инстални си Уайър шарк или НетМон да видиш какво къде се случвва. Много мерише на сертификати

Netwok Access Translation (NAT) инейбълнато ли ти е в опциите на рутера?
Статични Ай Пита ли играеш и DHCP на рутера пуснато или не е?(видях,че не е)е щом не е кой раздава ай питата
Firewall на рутера ака - на гейтуея съответно в случая в какъв статус е?
Къф е тоя IpV6 адрес горе?

Виж това дали ще ти послужи:
What is the wiring of the setup. I looks to me as if you connected the hardware firewall, which is your gateway to the internet, to the internet/WAN port of the WRT which also acts as gateway. Moreover you have the identical subnets on both sides of the WRT. The is not correct, though. A router separates different subnets but not the same.
At the moment you have on the WRT (I guess)
WAN: 10.0.0.0/255.0.0.0
LAN: 10.0.0.0/255.0.0.0
Any IP packet addressed to 10.0.0.0/255.0.0.0 on the LAN side remains on the LAN side and is directly send through the LAN.
The same is true for the WAN side.
Communication on 10.0.0.0 addresses is not possible as the router separates the networks. You can connect to the internet, though, as those addresses are not in the 10.0.0.0 range. The WRT acts as gateway and accepts all packets that are sent to addresses except 10.0.0.0. The WRT itself forwards the packets to its own gateway on the internet side and thus to the firewall.
To fix this: I suppose you just want to have wireless access to your network. You don't actually want a wireless router but simply an access point. To use the WRT as access point, (you already have turned off DHCP and it has a unique IP address in your subnet) connect the hardware firewall to a LAN port of the WRT. That way the router functions of the WRT are not used and it basically works as wireless bridge.