Pfsense Software, WireGuard VPN
-
Hi everyone,
Kinda struggling here to get my head around certain parts of Pfsense and VPNs. Im not a total newbie but I dont work in the networking end of things daily.
Im currently building two Pfsense Servers from used rack servers. So I never have to mess around with purchasing a new wifi routers every year or so due to obsolesence.
I have a very simple need and use case. Nothing fancy. I have a business that I have a couple servers, pfsense server, security cameras and fiber isp along with 5 static ips. Then my home with exact same setup as my business.
I need to be able to connect both lan networks together and be able to access my cameras, servers, ect on both ends over the wan on both ends as one network
I wish to setup a Wireguard VPN server. My understanding is this will allow me to connect and access both of my lans together as one network, encrypted over public internet?
Since I have 5 static ips I wish to use one at each end on the pfsense routers?
I dont want to go through someobe elses vpn servers routed through mars, venus, or the moon... I want everything on my own local hosted hardwares/servers... Im also exhausted of the constant monthly nickel dime subscription bs...
I am hoping that someone can provide the following:
Is what Im seeking to do possible?
Can anyone provide a simple high level overview/summary and provide some links on how to setup?
My appologies for asking such basic questions. I can never find info on setting up simple self hosted pfsense & Wireguard setup... any help would be appreciated.
Thanks
-
@Ratfink Connecting two sites with Wireguard VPN is absolutely doable, and you don't even need fixed IP's for it to work.
When you say you have 5 fixed IP's from your ISP, I'm kind of assuming you have your office at your house? Meaning they are both connected to the same fibre? Otherwise, if they are at very different locations, is it still the same ISP?
In terms of getting the IP's on the respective pfsense machines, I assume you know how or have instructions from the ISP to do this. Might be MAC based if DHCP for example...Anyway, running pfsense on repurposed HW is very common and can be done "barebone" or virtualized. So you shouldn't have any problems getting to to work on your rack servers, hopefully.
So step one is of course getting both machines up and running. And since they will be for different sites and connected via VPN you must make sure to use different LAN subnets on them. Like 192.168.1.0/24 on one and 192.168.2.0/24 on the other.
Once you have them up and running you can follow a guide like one of these to set up wireguard.
Even though you have fixed IP's it might be a good idea to get two domains, unless you already have that.https://www.youtube.com/watch?v=2oe7rTMFmqc
Youtube Video