• Error. Unable to delete post

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • WireGuard alternative AmneziaWG

    4
    0 Votes
    4 Posts
    2k Views
    M
    Count me in! But considering replies seems like it never gonna happen
  • Wireguard Failover

    4
    0 Votes
    4 Posts
    744 Views
    chpalmerC
    @jlinesabi Just as an update.. my system right now is on failover behind CGNAT (static side) and connected to a site behind an AT&T Wireless site with a public IP but set up for dynamic. Working quite well.
  • 0 Votes
    1 Posts
    36 Views
    No one has replied
  • 0 Votes
    26 Posts
    12k Views
    S
    @LaUs3r ,Hi yes, I followed the Surfshark WireGuard guide and now it’s working. Earlier, the guide steps were too superficial so I kept missing things, but in the end the Surfshark WireGuard guide worked. However, the default gateway issues still remain WireGuard is not working as the default gateway only when WANDHCP is default gateway the handshake is formed Anyway i switch to openvpn, the setup i was working on it is to make nested multi hop vpn the built now looks like this: pfSense#1 → [Veepn OpenVPN1 UDP → (lan segment of pfsense #1 connted to pfSense#2) → pfSense#2 OpenVPN2 UDP] → (lan segment of pfsense #2 connected to windwos vmware) → vmware windwos Internet • pfSense#1 has my Local ISP WAN Connected • There is no WAN connected to pfSense#2 only lan segment of pfsense #1 connected I’m using OpenVPN UDP on both pfSense firewalls, each with a different VPN provider the first one is VeePN and the second one is Surfshark. For the whole setup, I followed Lawrence Systems’ guide.
  • Force TV out opposite WAN

    3
    0 Votes
    3 Posts
    115 Views
    chpalmerC
    @tinfoilmatt Thanks! I have done that and it worked when forcing just her TV out the Centurylink.. My problem is my local box here. Im missing something because I can not get it to pass traffic from the WAN to the Wireguard tunnel. Ive got some time today so will chip away on my lab setup to see if I can finally accomplish it here first.
  • Wireguard Routing help - 1 way working only

    14
    0 Votes
    14 Posts
    502 Views
    A
    Hi @patient0, Already fixed :) reset and preformed a full new installation. The peer can connect and performed a successful Handshake, and ping pfsense, wireguard and lan servers. However psfsense and my Lan servers can't ping this peer even with the handshake performed. I know that ping can be misleading but don't now what else.
  • 0 Votes
    12 Posts
    3k Views
    B
    @patient0 said in The service show not running but client can connect to wireguard server.: Oh, I see, I didn't realize that the same issue existed on CE. I would like to say, CE user stumbled at first about the issue... (to check above)
  • 0 Votes
    4 Posts
    220 Views
    H
    @RNM-0 Thanks for your comment and sharing your fix. Unfortunately I don't want to take down pfsense and downgrade versions. I'm currently fine at the moment since I'm using Tailscale and that works. I also fixed the other crash I was having with pfblocker by changing a line code that wasn't pushed out under this version. Hopefully the stable release won't take too long to release but it appears there's still some open bugs that need to be fixed before that happens, and ironically, both the pfblocker and wireguard issues aren't on that list of bug fixes.
  • Vlans site 2 site access

    1
    0 Votes
    1 Posts
    61 Views
    No one has replied
  • Wireguard help

    3
    0 Votes
    3 Posts
    165 Views
    D
    @chpalmer okay so here is the update. I was able to get all my wireguard servers handshaking, my two personal tunnels and my one nord. I have full access to to my lan with my personal tunnels but I now dont have nord routing any traffic through its tunnel. I try to make a lan rule route one ip through nord and make one NAT rule and nothing. I lose internet on my one ip when I try and make a rule to use the nordvpn gateway
  • Dual wireguard server help

    1
    0 Votes
    1 Posts
    68 Views
    No one has replied
  • WireGuard client NAT with alias IP breaks handshake on pfSense 2.8.1

    2
    0 Votes
    2 Posts
    222 Views
    N
    Found a solution: When using the desired outbound address in the outbound nat rule for translation directly, instead of using an alias ip, it seems to work as desired.
  • Weird Wireguard Problem: Some Peers getting blocked

    2
    2
    0 Votes
    2 Posts
    173 Views
    Z
    Yeah, I'm dumb. The tunnel CID was /29. I just read that only 6 IPs are possible with /29. After I changed the tunnel network to /28, everything works as desired. Well, maybe it will help someone else. Gosh, I'm so embarrassed. XD
  • Connecting to pfSense WireGuard server with Android's Rethink DNS app

    1
    0 Votes
    1 Posts
    203 Views
    No one has replied
  • WireGuard Package Preventing Reboots

    1
    0 Votes
    1 Posts
    231 Views
    No one has replied
  • can only reach wg clients from pfsense not from lan

    3
    0 Votes
    3 Posts
    346 Views
    M
    @Bronko Thank you very much. I tried adding a route to the device server - unfortunately it wont let me set static routes on tunnel interfaces - but I contacted the manufacturer here and hope he has a solution. I will keep this thread updated and let you know of the outcome
  • WG Site2Site issues

    3
    1
    0 Votes
    3 Posts
    1k Views
    I
    @Bronko The command output of pfctl -vvsr | grep 100000101 is: @2 block drop in log inet all label "Default deny rule IPv4" ridentifier 1000000101 But as I have a rule above saying allow any, this shouldn't happen!
  • 0 Votes
    3 Posts
    2k Views
    P
    @Bob.Dig I will work on some pics but it's been in a state of evolution as a test network running another scenario at the moment - but when I can switch it back to this I was looking for some things to focus on and try. I used an interface group for NAT rules because one of the tutorials I read showed to do that and said create a group or do rules for every one. Seemed like a group would be best practice then for larger numbers - but you you recommend to just do a NAT entry for each instead?
  • Can’t access LAN from iPhone WG app

    38
    0 Votes
    38 Posts
    8k Views
    TommyMooT
    @hfederau good manual to recheck setup -> https://www.wundertech.net/how-to-set-up-tailscale-on-pfsense/
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.