Devices connectin to Pfsense Wireguard Server require LAN rules and not Interface Subnet rules?
-
For OpenVPN, if you want to give it access to the server's external internet then your do something like 10.1.1.0 (OpenVPN subnet) has access to internet using Blah interface (for example WAN, seperate OpenVPN Client1, seperate OpenVPN Client 2). This rule is place on the OpenVPN firewall area.
I tried duplicating this with Wireguard using the wireguard ip subnet and it did not work. What did work was referencing the device VPNing in by its LAN address. Isn't there a way to specify devices coming in through Wireguard OpenVPN Client 1 while those that are actually in the local network use OpenVPN Client 2? Right now, I have to have each device on the same internet connection whether they VPN through Wireguard from an external location or whether they are on the local network.
-
@ryu945 I tried VPNing from outside the network and I couldn't get internet at all for wireguard.