Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    routing ipsec /wireguard

    Scheduled Pinned Locked Moved IPsec
    7 Posts 2 Posters 926 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      Betahelix
      last edited by

      Hi.
      i have a setup with a netgate 4100 and 2100 linked via ipsec tunnel.
      Traffic between these two works fine.

      I also have a wireguard server for mobile units on the 4100.

      I am unable on reach anything via the ipsec tunnel when on wireguard.
      What am i missing?

      B 1 Reply Last reply Reply Quote 0
      • B
        Betahelix @Betahelix
        last edited by

        Anyone who can help?

        J 1 Reply Last reply Reply Quote 0
        • J
          Jarhead @Betahelix
          last edited by

          @betahelix Did you add the 2100 subnet as allowed in wireguard?

          B 1 Reply Last reply Reply Quote 0
          • B
            Betahelix @Jarhead
            last edited by

            @jarhead ive set 0.0.0.0 as allowed. so everything should be allowed

            J 1 Reply Last reply Reply Quote 0
            • J
              Jarhead @Betahelix
              last edited by

              @betahelix So then you'll have to add the wireguard tunnel network to the 2100's ipsec.

              B 1 Reply Last reply Reply Quote 0
              • B
                Betahelix @Jarhead
                last edited by

                @jarhead I have now added the following as phase2 on 2100 (remote site)

                192.168.10.0/24 (LAN on primary site)
                172.16.16.0/24 (Wireguard lan)
                192.168.70.0/0 (OpenVPN lan)

                Still no traffic between anything.

                J 1 Reply Last reply Reply Quote 0
                • J
                  Jarhead @Betahelix
                  last edited by

                  @betahelix So now there's an OpenVPN tunnel too?
                  Can you show the actually topology of both sites?
                  When I have VPN issues I always use the Packet Capture under Diagnostics menu. Try that on the 2100 while pinging from the WireGuard clients.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.