• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Site to Site Wireguard not routing over tunnel

WireGuard
2
3
520
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B
    Bambos
    last edited by Feb 21, 2021, 10:16 PM

    Hello everyone.

    I have followed the documentation for a site to site configuration. Everything is ok up to the point i have the gateway creation and interface adding. After i have put firewall rules wide open on the interface, i go diagnostics->ping from site1 Lan to the pfsense of site2 lan. No ping.
    I saw default Lan rule was from: Lan net, so i changed both firewalls to any. I thought that this is it... But no. Still no route through the tunnel.
    Anyone tried the site to site?
    What might be wrong? Is it still on beta version?

    1 Reply Last reply Reply Quote 0
    • J
      jimp Rebel Alliance Developer Netgate
      last edited by Feb 23, 2021, 6:29 PM

      There isn't enough information to speculate about what is happening there. If it isn't routing LAN-to-LAN, then it could be pretty much anything. You need to supply more detail about your specific configuration in WireGuard, firewall rules, and routing on both sides.

      Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

      Need help fast? Netgate Global Support!

      Do not Chat/PM for help!

      B 1 Reply Last reply Feb 23, 2021, 6:43 PM Reply Quote 0
      • B
        Bambos @jimp
        last edited by Feb 23, 2021, 6:43 PM

        @jimp Hello Sir.
        I have sort out all issues and now i have more specific questions.(Working now).

        I have added a rule on Wan interface, destination wan address for the port used on both sites. Is this necessary to both ? (1 site has static public ip, the peer is dynamic)

        I have a rule on both sites Lan's: source * (any) instead of Lan net. Does this needed ?

        I have allow all rule on WireGuard auto created tab and also on the Wireguard virtual interface i have made the assignment. Does those rules both needed ?

        Thank you , your comments are much appreciated.

        1 Reply Last reply Reply Quote 0
        3 out of 3
        • First post
          3/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.