Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Wireguard - Logs

    Scheduled Pinned Locked Moved pfSense Packages
    5 Posts 4 Posters 5.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      couteauabeurre
      last edited by

      Hi all,

      is there any logs from wireguard package ? and where are they stored on pfsense ?

      All my logs are send to a syslog connected to a SIEM and i want to know if there are many bad attempts to connect to my wireguard server

      1 Reply Last reply Reply Quote 0
      • B
        bigtfromaz
        last edited by

        I know this is an old topic, but if you're still around, did you ever find the connection logs? I need to know where they are as well.

        S 1 Reply Last reply Reply Quote 0
        • S
          slu @bigtfromaz
          last edited by

          @bigtfromaz
          no logs, just the WG status.

          WG is not an "active" connection, see:
          https://www.wireguard.com/#simple-network-interface

          pfSense Gold subscription

          B 1 Reply Last reply Reply Quote 0
          • B
            bigtfromaz @slu
            last edited by

            @slu In WireGuard , for me, the connection log is the log that each WireGuard peer emits when they handshake. I am looking to diagnose issues in that process.

            On Linux, Windows and phones, the WireGuard logs are detailed and useful.

            I can't find the logs in the pfSense GUI, so I find myself backing into the answer by logging firewall rules and tracing packets. It's inefficient.

            F 1 Reply Last reply Reply Quote 0
            • F
              FoolCoconut @bigtfromaz
              last edited by

              @bigtfromaz Agreed. I'm also looking for a way to monitor logs, and potentially send out notifications on abnormal connections, eg. Connection from a previously unseen country, etc.

              So far the only remote solution would be: https://github.com/MindFlavor/prometheus_wireguard_exporter

              I don't feel like installing additional software on my router, but on the other hand, there doesn't seem to be a way to monitor these logs externally.

              Please let me know if you find anything interesting.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.