• wg show segmentation fault

    10
    0 Votes
    10 Posts
    1k Views
    S
    @jimp said in wg show segmentation fault: If you want to run one instance on multiple ports you can port forward from one port to the other, this works perfectly. thanks again!
  • wireguard remote access dns

    3
    0 Votes
    3 Posts
    1k Views
    S
    I solved this by adding an additional interface directive in the DNS Resolver advanced options box. I confirmed that the running unbound config didn't include the wg interfaces and that's why it wasn't responding. There's no "wireguard" in the Network Interfaces box of the DNS Resolver screen unless you create a Firewall interface based on the wg interface. I don't use ALL because I do not want some of my interfaces to have the option of using pfsense's unbound. Interestingly enough, the proper access-control directives did exist in the config already. I added these lines and created a firewall rule allowing the wg subnet to access DNS on this IP. server: interface: 172.27.80.1 interface: 172.27.80.1@853
  • WG - Full tunnel problematic

    29
    0 Votes
    29 Posts
    4k Views
    D
    @80scyborgninja said in WG - Full tunnel problematic: Definitely very strange. Definitely a mystery here , but I am glad you got it working. And thanks for the feedback.
  • WireGuard with NordVPN NordLynx?

    6
    0 Votes
    6 Posts
    1k Views
    G
    @bartkowski Yep but as I said, they seem to share a single keypair and IP across all your devices, so you can only establish one tunnel.
  • pfSense 2.5.0 boxes with WireGuard keep crashing (both!)

    Moved
    24
    0 Votes
    24 Posts
    3k Views
    Z
    My problems are gone now with the change to OpenVPN. Disabled WireGuard and all problems are gone for now. No crashes anymore....
  • PSA: Check your MSS settings on WG interfaces.

    9
    1 Votes
    9 Posts
    4k Views
    perikoP
    @dem would be a good option like Ovpn does with the parameter mtu-test, regards!!!
  • Wireguard Site to Site - Unable to access remote sites

    10
    0 Votes
    10 Posts
    2k Views
    Y
    SOLVED. Had to remove an IPSec Tunnel to make this work
  • v2.5.0 Wireguard traffic graphs flatline on zero

    Moved
    6
    4 Votes
    6 Posts
    1k Views
    X
    @jimp Thanks!
  • Wireguard and interfaces

    11
    0 Votes
    11 Posts
    1k Views
    KOMK
    I finally got it working. I wanted a road warrior config between my home pfSense and work. It took me awhile to realize that, while you don't need to define an interface on the work (server) side, you do on the home (client) side plus the usual firewall rule and outbound NAT rule to direct the traffic out the wireguard interface.
  • Wireguard Road Warrior access other wireguard Tunnels

    5
    0 Votes
    5 Posts
    947 Views
    B
    @periko my ISP using several routers behind my firewall. So all sites are dynamic, only my central is static.
  • WireGuard Widget?

    6
    0 Votes
    6 Posts
    1k Views
    S
    Thanks for the info guys. I didn't realize how different WG is compared to the more traditional vpn.
  • Create site-to-site tunnel with bridged like network

    4
    0 Votes
    4 Posts
    691 Views
    jimpJ
    No, that is not possible.
  • Wireguard Tunnel on LAN of existing router for remote access

    1
    0 Votes
    1 Posts
    363 Views
    No one has replied
  • is there a way to hard set MTU value on WG0 interface from 1420 to 1500?

    5
    0 Votes
    5 Posts
    1k Views
    viktor_gV
    https://redmine.pfsense.org/issues/11600
  • Custom Monitor IP Gateway hangs

    3
    0 Votes
    3 Posts
    553 Views
    E
    @madnet I change MTU values to 1500 on my Site to Site VPN as the default value of 1420 was affecting google services (no youtube, no gmail, not maps nothing that had to do with google worked and I also had issues with Apple email servers that did not worked with MTU set to 1420) but as soon as the MTU value was changed to 1500 all worked fine only issue that I see is that the MTU values will revert back to 1420 after sometime by itself inside Pfsense but if I change it again and save it will set it back to 1500 and all work good but it will be good to know if there is a way to hard set the MTU to 1500)
  • WireGuard interface IPv6 prefixlen

    7
    0 Votes
    7 Posts
    947 Views
    G
    @dennis_s Sure! Opened bug #11618.
  • pfsense denying wireguard client traffic

    3
    0 Votes
    3 Posts
    792 Views
    T
    @jimp Thanks for that - I must have screenshot the wrong thing. I've actually played around some more, and it turns out that I had a problem with the protocol. I had not realized that I set it up with TCP rather than UDP. For those who might experience this, please note carefully, that for the Firewall | Rules | WANS, make sure the protocol is UDP: [image: 1614733638114-e23c68db-45cc-4517-bc99-a8820426ca19-image.png] This is different to Firewall | Rules | Wireguard, in which the protocol is Any: [image: 1614733711680-d5d7bf63-a23f-48c5-9aed-56ed5087d8c1-image.png]
  • DNS leak with wireguard site-to-site with windscribe

    3
    0 Votes
    3 Posts
    1k Views
    ManateeM
    @tigs this seems to me like the issue I'm currently facing. Unfortunately I haven't found a solution yet. Neither did @xxgbhxx's idea work for me. I suspect in-depth knowledge of the inner-workings of pfSense/FreeBSD/the WireGuard module(?) is required to figure out what's going on. On my installation the DNS resolver would even use the WAN interface when it is not even selected as one of the "Outgoing Network Interfaces", which seems odd to me.
  • Purpose of WireGuard tab and WG0 ?

    4
    0 Votes
    4 Posts
    749 Views
    chudakC
    @dma_pf @jimp Interesting... Thx I never assigned an interface to OpenVPN. Is it incorrect ? When would you vs won't you assign it ?
  • iPhone via WG tunnel - help validate my setup

    12
    0 Votes
    12 Posts
    1k Views
    D
    @chudak said in iPhone via WG tunnel - help validate my setup: @dma_pf When I set Allowed IPs and Peer WireGuard Address as suggested in the video to 10.0.0.6/32 I get 100% loss on WG0_XX Gateway seeing in the dashboard. Have you tried this ? I'm seeing the same result. In my case I have been testing this with my android phone. It's the only peer I have set up at the moment. It's using the native Wireguard app. The only time I'm seeing the 100% packet loss on the dashboard is after I get home, shut off wireguard and turn and connect it to my WiFi which is connected to pfSense. I haven't really looked into why it's showing the loss. But I just looked at the System/Gateways log and saw that there were entries showing the packet logs on the tunnel interface. I just noticed that the gateway in pfsense had the Gateway Monitor enabled. I just shut it off to see what happens. I'll let you know.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.