ok sorry for the time taken to reply- here is the latest.
I created a DNS record for broker.xxx.com
verified that it's working and verified that port 8883 is open on the host.
Netclient seems to be working fine, but still won't connect. here's the latest Netclient pull-
[netclient] 2022-05-18 11:47:20 initializing network test
[netclient] 2022-05-18 11:47:21 started daemon for server broker.wg.domain.com.au
[netclient] 2022-05-18 11:47:21 netclient daemon started for server: broker.wg.domain.com.au
[netclient] 2022-05-18 11:47:52 unable to connect to broker, retrying ...
[netclient] 2022-05-18 11:47:52 could not connect to broker broker.wg.domain.com.au connect timeout
[netclient] 2022-05-18 11:47:52 connection issue detected.. attempt connection with new certs
[netclient] 2022-05-18 11:47:52 register at
https://api.wg.domain.com.au:443/api/server/register
[netclient] 2022-05-18 11:47:52 certificates/key saved
[netclient] 2022-05-18 11:47:53 shutting down netclient daemon
[netclient] 2022-05-18 11:47:53 checkin routine closed
[netclient] 2022-05-18 11:47:53 shutdown complete
So it looks like a setup issue at the Server end. I'll have a look at the logs there