Wireguard - Logs
-
Hi all,
is there any logs from wireguard package ? and where are they stored on pfsense ?
All my logs are send to a syslog connected to a SIEM and i want to know if there are many bad attempts to connect to my wireguard server
-
I know this is an old topic, but if you're still around, did you ever find the connection logs? I need to know where they are as well.
-
@bigtfromaz
no logs, just the WG status.WG is not an "active" connection, see:
https://www.wireguard.com/#simple-network-interface -
@slu In WireGuard , for me, the connection log is the log that each WireGuard peer emits when they handshake. I am looking to diagnose issues in that process.
On Linux, Windows and phones, the WireGuard logs are detailed and useful.
I can't find the logs in the pfSense GUI, so I find myself backing into the answer by logging firewall rules and tracing packets. It's inefficient.
-
@bigtfromaz Agreed. I'm also looking for a way to monitor logs, and potentially send out notifications on abnormal connections, eg. Connection from a previously unseen country, etc.
So far the only remote solution would be: https://github.com/MindFlavor/prometheus_wireguard_exporter
I don't feel like installing additional software on my router, but on the other hand, there doesn't seem to be a way to monitor these logs externally.
Please let me know if you find anything interesting.