Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    The service show not running but client can connect to wireguard server.

    Scheduled Pinned Locked Moved WireGuard
    12 Posts 7 Posters 2.4k Views 8 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • lvrmscL Offline
      lvrmsc
      last edited by lvrmsc

      Same here. It started after I installed 25.07.
      Then it settled down by itself after a few days.
      It started again after upgrading to 25.07.1.
      WireGuard works fine (it merely connects to the remote site from this one).
      However, I am refraining from upgrading the remote, because if the 'service' does not start, I fear it will not listen to incoming connections, which would leave me in a difficult situation.

      The other topic I had opened before finding this:
      https://forum.netgate.com/topic/198449/25.07-release-amd64-wireguard-service-reported-stopped-yet-tunnel-trafic-clearly-is-ok

      B 1 Reply Last reply Reply Quote 0
      • B Offline
        Bronko @lvrmsc
        last edited by

        @lvrmsc said in The service show not running but client can connect to wireguard server.:

        Same here. It started after I installed 25.07.

        Same here too, came from fresh 2.8.1 installation and restored 2.7.2 config.

        The other topic I had opened before finding this:
        https://forum.netgate.com/topic/198449/25.07-release-amd64-wireguard-service-reported-stopped-yet-tunnel-trafic-clearly-is-ok

        (checked, have Watchdog Service disabled temporarily too)

        My wg_0 worked directly after reboot, wg_1 takes some minutes to established, but Wireguard Service marked as stopped (red) all the time.

        Some static routes defined on pfsense for wg_1 interface with gateway on the remote side, but still missing in system routing table after wg_1 established (ex.):

        ...
        php_wg[24929]: /usr/local/pkg/wireguard/includes/wg_service.inc: Static Routes: Gateway IP could not be found for 10.0.30.0/24
        ...
        

        Therefore wg_1 isn't usable regarding related routes are missing.

        My work around currently:
        Disabling Peer assigned to wg_1 by GUI
        --> pfsense means (by error message) Wireguard not running ;-) and disables wg_0 related Peer too and Wireguard Service stopped in real
        --> Re-enable wg_1 related Peer
        --> Start Wireguard Service via GUI and it goes to green
        --> form now on all wg_1 related routes are in the routing table

        It seems behavior could routing table related because the error messages (above) starts at boot time before Wireguard Service is started...

        What is the situation on your sides?

        (Will check the situation with temporarily disabled static routes before next reboot)

        B 1 Reply Last reply Reply Quote 0
        • chpalmerC Offline
          chpalmer @IonutIT
          last edited by

          @IonutIT said in The service show not running but client can connect to wireguard server.:

          When booting up, pfsense says the service is not running, but all tunnels work just fine.

          25.11-BETA (amd64)
          

          built on Tue Oct 28 11:38:00 PDT 2025
          FreeBSD 16.0-CURRENT

          Now running into the same issue after update this morning.

          Triggering snowflakes one by one..
          Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

          T 2 Replies Last reply Reply Quote 0
          • T Offline
            tedquade @chpalmer
            last edited by tedquade

            @chpalmer Me too!

            25.11-BETA (amd64)
            built on Tue Oct 28 12:38:00 CST 2025
            FreeBSD 16.0-CURRENT

            Ted

            1 Reply Last reply Reply Quote 0
            • T Offline
              tedquade @chpalmer
              last edited by

              @chpalmer One of us should post this to redmine as a regression. Just done by me.

              Ted

              1 Reply Last reply Reply Quote 1
              • B Offline
                Bronko @Bronko
                last edited by

                said in The service show not running but client can connect to wireguard server.:

                It seems behavior could routing table related because the error messages (above) starts at boot time before Wireguard Service is started...

                (Will check the situation with temporarily disabled static routes before next reboot)

                Wasn't routing table related.

                Issue seems to be solved here...
                (Patched applied, we will see.)

                patient0P 1 Reply Last reply Reply Quote 0
                • patient0P Online
                  patient0 @Bronko
                  last edited by

                  @Bronko there is another thread about it thread: wireguard bug.

                  According to OT it's fixed in the latest BETA 25.11 20251111 from yesterday (or the day before)

                  B 1 Reply Last reply Reply Quote 1
                  • B Offline
                    Bronko @patient0
                    last edited by

                    @patient0 Thanks! ( I'm on 2.8.1)

                    patient0P 1 Reply Last reply Reply Quote 0
                    • patient0P Online
                      patient0 @Bronko
                      last edited by

                      @Bronko said in The service show not running but client can connect to wireguard server.:

                      @patient0 Thanks! ( I'm on 2.8.1)

                      Oh, I see, I didn't realize that the same issue existed on CE.

                      B 1 Reply Last reply Reply Quote 0
                      • B Offline
                        Bronko @patient0
                        last edited by Bronko

                        @patient0 said in The service show not running but client can connect to wireguard server.:

                        Oh, I see, I didn't realize that the same issue existed on CE.

                        I would like to say, CE user stumbled at first about the issue...
                        (to check above)

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.