Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Log for connection attempts?

    WireGuard
    2
    2
    387
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pastic
      last edited by

      Is there anywhere apart from the status tab in the webgui that I can see info about connection attempts?

      I am the sole user of wireguard on my pfsense and to keep track of what's going on I have my log server send an alert email whenever pfsense lets traffic pass. Until now I have only received alerts when I connect myself, but the other day I got an alert when I was not trying to connect, and saw that traffic from another country had been let through pfsense according to the 'pass traffic to wireguard' rule.

      Wireguard status tab showed that the latest handshake was with me several hours prior to this alert/traffic.

      I am thinking everything is in order. Some bot tried the port in question and pfsense passed the traffic to wireguard and since I see no handshake info, I suppose wireguard rejected the attempt or the attempt was not even capable of interacting with wireguard.

      1. But is there any way I can verify that is what happened?

      2. And if you think I am wrong in my assumption above, please correct me.

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan @pastic
        last edited by

        @pastic

        Your WAN IP is reachable by who ever you want.
        Like your front door.
        But you need the 'key' from that moment.
        You have a key.

        But they :

        @pastic said in Log for connection attempts?:

        traffic from another country had been let through pfsense according to the 'pass traffic to wireguard' rule.

        do not have the key.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.