WireGuard setup
-
Hopefully this is the correct area for the post. I have a limited skill set but here goes. Been running pfsense since 2018 and really like it. Early on found a few videos on how to setup vlans and OpenVPN and also got a helpful hand here with the OpenVPN Server setup. It has been rock solid ever since and haven’t had to do anything, it just works.
Now looking for a little guidance with WireGuard. I see that WireGuard was getting introduced but was only available in 2.5 so I took the plunge today and upgraded. I've had WG running on a Raspberry Pi 4 with the Pi’s port forwarded for bout 5 - 6 months and all is good. It was a challenge for me but after several tries and a good youtube video I finally got it working. So the question is could I just shut down the Ras Pi and put my existing Pi Keys into pfsense’s WG component without generating new keys? And if so will it coexist with pfsense’s OpenVPN server function, I think it would but going to ask anyway. Thanks in advance for any help and sorry for any typos
-
Moved to the new WireGuard sub.
Yes to all of that.
Of those things importing the keys will be interesting. It should work fine and I've seen nothing to suggest there is a compatibility issue.
You may find some routing conflict with OpenVPN depending on how you're using it. If the were both site-to-site between the same sites for example.
Steve
-
@stephenw10 So there could be a conflict if both OpenVPN and WG are in use at the same time but should be OK if not in use together. Correct?
The router is for personal use so I'm the only one that uses it for remote access. More than likely its always going to be one device at a time connecting. If I could get WG working and it works like it has on the Ras Pi may disable OpenVPN server at some point. TIA
-
If you are using them both as remote access style servers then you can simply use different tunnel subnets and there won't be a conflict.
-
@stephenw10 Thank you, before I do anything going to run the new 2.5RC build "as is" a few days just to to make sure there is no fall out from the upgrade. Currently up with new build just under 5 hours and not seeing any issues but still would like to give it a day or two before attempting the WG transition. Thank you again for the info