WireGuard multiple fail over and dynamic routing
-
- how do I do dynamic routing with wireguard network interfaces without allow rules.
https://docs.netgate.com/pfsense/en/latest/vpn/wireguard/routing.html
Tried it, does not work. (ffr bgp)
Also, .. I kinda want 2 interfaces on one pfsense box with failover. This doesn't work unless I setup NAT but NAT is setup on the outer routers.
router1 --- router3 | | router2 ---'
This works with openvpn with ipsec why not with wireguard. Previously I was able to set this up back when it wasn't a module. Why is this so hard now!
-
@ofloo Did you get anywhere with this? I'm about to dive into FRR + Wireguard. Was hoping not to be the first man into the cave.
-
@luckman212 solved my problem not sure what i did though. Don't remember. I'll try and remember and post once I do.
EDIT:
I was supposed to create a tunnel interface for each tunnel.
-
@ofloo How's this working for you these days?
-
Works fine.
-
@ofloo Good to know. Would love to see some sanitized screenshots of your BGP/FRR settings and related WG peers
-
@luckman212 it's the same as a non bgp peer.
setup bgp router options
neighbour (target system)
You need to setup frr
That's the allow all on the bgp
And setup ofcourse interface and firewall rules