Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Firewall rule for WireGuard & Ras Pi

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 359 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      S762
      last edited by

      I’m trying to get Wireguard working with a Raspberry Pi but I think the pfsense’s firewall may be misconfigured because simply put I don’t know to to configure it. I tried this last year and had the same result, I could see that the WG client connects from a remote buck I still have the remote’s public IP and I’m unable to connect to any of the LAN clients.

      I have assigned a static lease to the Ras Pi and below used the instructions below to setup the Pi, I used the YT video as a guide to port forward but not there yet. The last link is the WG client
      https://github.com/adrianmihalko/raspberrypiwireguard
      https://www.youtube.com/watch?v=3-DU47zDrQk
      using the WireGuard for Windows installer
      https://www.wireguard.com/install/

      Fortunately pfsense’s OpenVPN is working perfectly and I’m not dependent on WG for remote access but I do want to see how it performs. Any guidance on a firewall rule would be greatly appreciated.
      Thanks in advance

      1 Reply Last reply Reply Quote 0
      • RicoR Offline
        Rico LAYER 8 Rebel Alliance
        last edited by

        https://forum.netgate.com/topic/150943/i-made-a-wireguard-package-for-pfsense
        Maybe you want to give it a try...

        -Rico

        1 Reply Last reply Reply Quote 0
        • S Offline
          S762
          last edited by S762

          Thanks Rico, I’d like to get it working on the Ras Pi because I don’t want to torpedo my pfsense install for something I’ve done incorrectly plus I’m sort of half way there with the Pi even though it’s not there yet.

          That said I do have a test pc with pfsense and a 4 port intel nic so I probably try to that unofficial WG install on it, that way if I do something wrong I don’t lose everything.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.